All Versions
87
Latest Version
Avg Release Cycle
29 days
Latest Release
532 days ago

Changelog History
Page 5

  • v3.11.5

    April 15, 2020
  • v3.11.4 Changes

    February 25, 2020

    ๐Ÿ”„ Changed

    • โœ‚ Remove chroot in Agentd to allow it resolve DNS at any time. (#4652)
  • v3.11.3 Changes

    January 28, 2020

    ๐Ÿ›  Fixed

    • ๐Ÿ›  Fixed a bug in the Windows agent that made Rootcheck report false positives about file size mismatch. (#4493)
  • v3.11.2 Changes

    January 22, 2020

    ๐Ÿ”„ Changed

    • โšก๏ธ Optimized memory usage in Vulnerability Detector when fetching the NVD feed. (#4427)

    ๐Ÿ›  Fixed

    • Rootcheck scan produced a 100% CPU peak in Syscheckd because it applied <readall> option even when disabled. (#4415)
    • ๐Ÿ›  Fixed a handler leak in Rootcheck and SCA on Windows agents. (#4456)
    • Prevent Remoted from exiting when a client closes a connection prematurely. (#4390)
    • ๐Ÿ›  Fixed crash in Slack integration when handling an alert with no description. (#4426)
    • ๐Ÿ›  Fixed Makefile to allow running scan-build for Windows agents. (#4314)
    • ๐Ÿ›  Fixed a memory leak in Clusterd. (#4448)
    • ๐Ÿ— Disable TCP keepalive options at os_net library to allow building Wazuh on OpenBSD. (#4462)
  • v3.11.1 Changes

    January 03, 2020

    ๐Ÿ›  Fixed

    • ๐Ÿ The Windows Eventchannel log decoder in Analysisd maxed out CPU usage due to an infinite loop. (#4412)
  • v3.11.0 Changes

    December 23, 2019

    โž• Added

    • โž• Add support to Windows agents for vulnerability detector. (#2787)
    • โž• Add support to Debian 10 Buster for vulnerability detector (by @aderumier). (#4151)
    • ๐Ÿ‘‰ Make the Wazuh service to start after the network systemd unit (by @VAdamec). (#1106)
    • โž• Add process inventory support for Mac OS X agents. (#3322)
    • โž• Add port inventory support for MAC OS X agents. (#3349)
    • ๐Ÿ‘‰ Make Analysisd compile the CDB list upon start. (#3488)
    • ๐Ÿ†• New rules option global_frequency to make frequency rules independent from the event source. (#3931)
    • โž• Add a validation for avoiding agents to keep trying to connect to an invalid address indefinitely. (#3951)
    • โž• Add the condition field of SCA checks to the agent databases. (#3631)
    • โš  Display a warning message when registering to an unverified manager. (#4207)
    • ๐Ÿ‘ Allow JSON escaping for logs on Logcollector's output format. (#4273)
    • โž• Add TCP keepalive support for Fluent Forwarder. (#4274)
    • โž• Add the host's primary IP to Logcollector's output format. (#4380)

    ๐Ÿ”„ Changed

    • ๐ŸŒ Now EventChannel alerts include the full message with the translation of coded fields. (#3320)
    • ๐Ÿ”„ Changed -G agent-auth description in help message. (#3856)
    • Unified the Makefile flags allowed values. (#4034)
    • Let Logcollector queue file rotation and keepalive messages. (#4222)
    • ๐Ÿ”„ Changed default paths for the OSQuery module in Windows agents. (#4148)
    • Fluent Forward now packs the content towards Fluentd into an object. (#4334)

    ๐Ÿ›  Fixed

    • ๐Ÿ›  Fix frequency rules to be increased for the same agent by default. (#3931)
    • Fix protocol, system_name, data and extra_data static fields detection. (#3591)
    • ๐Ÿ›  Fix overwriting agents by Authd when force option is less than 0. (#3527)
    • ๐Ÿ›  Fix Syscheck nodiff option for substring paths. (#3015)
    • ๐Ÿ›  Fix Logcollector wildcards to not detect directories as log files. (#3788)
    • ๐Ÿ‘‰ Make Slack integration work with agentless alerts (by @dmitryax). (#3971)
    • ๐Ÿ›  Fix bugs reported by Clang analyzer. (#3887)
    • ๐Ÿ›  Fix compilation errors on OpenBSD platform. (#3105)
    • ๐Ÿ›  Fix on-demand configuration labels section to obtain labels attributes. (#3490)
    • ๐Ÿ›  Fixed race condition between wazuh-clusterd and wazuh-modulesd showing a 'No such file or directory' in cluster.log when synchronizing agent-info files in a cluster environment (#4007)
    • ๐Ÿ›  Fixed 'ConnectionError object has no attribute code' error when package repository is not available (#3441)
    • ๐Ÿ›  Fix the blocking of files monitored by Who-data in Windows agents. (#3872)
    • ๐Ÿ›  Fix the processing of EventChannel logs with unexpected characters. (#3320)
    • ๐ŸŒฒ Active response Kaspersky script now logs the action request in active-responses.log (#2748)
    • ๐Ÿ›  Fix service's installation path for CentOS 8. (#4060)
    • โž• Add macOS Catalina to the list of detected versions. (#4061)
    • Prevent FIM from producing false negatives due to wrong checksum comparison. (#4066)
    • ๐Ÿ›  Fix previous_output count for alerts when matching by group. (#4097)
    • ๐Ÿ›  Fix event iteration when evaluating contextual rules. (#4106)
    • Fix the use of prefilter_cmd remotely by a new local option allow_remote_prefilter_cmd. (#4178 & 4194)
    • ๐Ÿ›  Fix restarting agents by group using the API when some of them are in a worker node. (#4226)
    • ๐Ÿ›  Fix error in Fluent Forwarder that requests an user and pass although the server does not need it. (#3910)
    • ๐Ÿ›  Fix FTS data length bound mishandling in Analysisd. (#4278)
    • ๐Ÿ›  Fix a memory leak in Modulesd and Agentd when Fluent Forward parses duplicate options. #4334)
    • ๐Ÿ›  Fix an invalid memory read in Agentd when checking a remote configuration containing an invalid stanza inside <labels>. #4334)
    • ๐Ÿ›  Fix error using force_reload and the eventchannel format in UNIX systems. #4294)
  • v3.11.0-rc3

    October 18, 2019
  • v3.11.0-rc2

    October 15, 2019
  • v3.10.2 Changes

    September 23, 2019

    ๐Ÿ›  Fixed

    • ๐Ÿ›  Fix error in Logcollector when reloading localfiles with timestamp wildcards. (#3995)
  • v3.10.1 Changes

    September 19, 2019

    ๐Ÿ›  Fixed

    • ๐Ÿ›  Fix error after removing a high volume of agents from a group using the Wazuh API. (#3907)
    • ๐Ÿ›  Fix error in Remoted when reloading agent keys (busy resource). (#3988)
    • ๐Ÿ›  Fix invalid read in Remoted counters. (#3989)