We fixed a race condition in El Proxy for which sometimes Logstash was failing to recognize whether an incoming log should be signed by El Proxy or not.
We fixed a bug in El Proxy, which caused the verify command to report corruptions in the blockchain if newly signed documents were still waiting to be indexed by Elasticsearch.
We fixed a bug in Geomap that did not allow automatic updates of hosts’ status.
Moreover, we fixed a bug that prevented the installation of the perl-JSON-XS package, which can be required by external checks.
We fixed two bugs in the Eventhandler. One bug causing a certificates verification error while using the GUI and another one causing the Eventhandler GUI to freeze when a particular race condition was encountered.
We fixed a bug in Tornado that led to a privilege escalation to Icinga2 system user.
For NetEye 4.25 we updated the following packages:
icingaweb2-module-geomap, icingaweb2-module-geomap-autosetup to version 1.17.1-1
neteye-setup to version 1.90.2-1
eventhandler, eventhandler-autosetup, eventhandler-neteye-config to version 1.8.3-1
icingaweb2-module-eventhandler, icingaweb2-module-eventhandler-autosetup to version 1.12.1-2
perl-nats to version 0.2.2_neteye1.0.1-1
tornado-common, tornado-rsyslog-collector-logmanager, tornado, tornado-dto,tornado-neteye-config, tornado-autosetup to version 1.19.6-1
icinga2-autosetup, icinga2-common, icinga2-ido-mysql, icinga2-resources, icinga2-neteye-config, icinga2, icinga2-bin, icinga2-debuginfo, icinga2-doc to version 2.11.9_neteye1.48.5-1
elastic-blockchain-proxy, elastic-blockchain-proxy-autosetup to version 0.20.2-1
NATS: Fix multi-tenancy configuration corruption in cluster environments When executing commands such as neteye install --restrict-services-to nats-server, neteye tenant config apply, or neteye satellite config create from a cluster node while nats-server was active on a different node, the shared Read More
Important: Grafana security update Type/Severity NetEye Product Security has rated this update as having a medium security impact. Topic An update for the grafana packages is now available for NetEye 4. Security Fix for NetEye 4.49 and 4.50 grafana-12.4.12_neteye3.31.4-1 Summary Four medium-severity CVEs Read More
Fixes for nginx and nginx-satellite We identified and fixed two issues affecting nginx resource management during service and resource restarts. nginx-satellite.service An issue could leave nginx worker processes running after nginx-satellite.service entered a failed state. These processes could continue listening Read More
When the GLPI inventory plugin is used to collect agent inventories, assets may fail to appear in GLPI even though the agents reach the server. The cause was a bug in the Icinga Web 2 SSO plugin: GLPI 11 marks Read More
Keycloak: Fix for Oversized Logout URL and Package Update This update addresses an issue where the logout redirect URL became excessively large, leading to failed logouts and HTTP 500 errors. When users belonged to a large number of groups, the Read More