Wazuh v3.9.3 Release Notes
Release Date: 2019-07-08 // almost 5 years ago-
🔄 Changed
- 🏁 Windows Eventchannel log collector will no longer report bookmarked events by default (those that happened while the agent was stopped). (#3485)
- Remoted will discard agent-info data not in UTF-8 format. (#3581)
🛠 Fixed
- 🌲 Osquery integration did not follow the osquery results file (osqueryd.results.log) as of libc 2.28. (#3494)
- ⚡️ Windows Eventchannnel log collector did not update the bookmarks so it reported old events repeatedly. (#3485)
- The agent sent invalid info data in the heartbeat message if it failed to get the host IP address. (#3555)
- 🔧 Modulesd produced a memory leak when being queried for its running configuration. (#3564)
- Analysisd and Logtest crashed when trying rules having
<different_geoip>
and no<not_same_field>
stanza. (#3587) - 📜 Vulnerability Detector failed to parse the Canonical's OVAL feed due to a syntax change. (#3563)
- AWS Macie events produced erros in Elasticsearch. (#3608)
- Rules with
<list lookup="address_match_key" />
produced a false match if the CDB list file is missing. (#3609) - 🔧 Remote configuration was missing the
<ignore>
stanzas for Syscheck and Rootcheck when defined as sregex. (#3617)