Version 6.3.0.5 Resolved Issues
Bug ID | Headline |
---|---|
GUI should allow max 256 addresses per DHCP pool |
|
Read sAMAccountUserName from ISE when it is available |
|
"default Keyring's certificate is invalid, reason: expired" health alert |
|
Cisco Firepower Threat Defense Detection Engine Policy Bypass Vulnerability |
|
Port-Channel issues on HA link |
|
Intrusion Event Performance Graphs load blank on 4100 and 9300 |
|
review of CVE-2016-8858 (OpenSSH) on Firepower software |
|
Lina traceback in Thread Name: cli_xml_server |
|
Linux Kernel 4.14 Vulnerabilities |
|
add NTPDATE update of blade sysclock from the supervisor before starting NTPD |
|
SDI - SUSPENDED servers cause 15sec delay in the completion of a authentication with a good server |
|
Device name doesn't exist in a syslog message if syslog alerting for connection events is configured |
|
Cisco FTD, FMC, and FXOS Software PAM Denial of Service Vulnerability |
|
ASA Enhancement: Generate syslog message once member of the SDI cluster changes state |
|
ASA may traceback and reload while waiting for "dns_cache_timer" process to finish. |
|
Traceback in VPN Clustering HA timer thread when member tries to join the cluster |
|
Cisco FirePower Threat Defense Information Disclosure Vulnerability |
|
OSPF Process ID doesnot change even after clearing OSPF process |
|
Firepower frequent traceback and restart on SFDataCorrelator process |
|
ASA report SFR module as 'Unresponsive' after reloading ASA module on 5585 platform |
|
ENH: ACE details for warning "found duplicate element" |
|
ENH: Add process information to "Command Ignored, configuration in progress..." |
|
Cisco ASA Software and FTD Software FTP Inspection Denial of Service Vulnerability |
|
Simultaneous FINs on flow-offloaded flows lead to stale conns |
|
PROMPTING FOR PASSWORD WHEN TRYING TO CONFIGURE enic, vfio-pci , igb_uio ON BLADE |
|
LACPDUs should not be sent to snort for inline-set interfaces |
|
cts import-pac tftp: syntax does not work |
|
Option to display port number on access-list instead of well known port name on ASA |
|
Unable to process gtpv1 identification req message for header TEID : 0 |
|
ASA drops GTPV1 SGSN Context Req message with header TEID:0 |
|
Network FIle Trajectory page takes 90 seconds to load each time |
|
Firepower 8000 interfaces might flap due to unhandled resource temporarily unavailable issue |
|
Cisco ASA and Firepower Threat Defense Software WebVPN Cross-Site Scripting Vulnerability |
|
Changes in interface-group or interface-zone in subdomain overwrites Global domain. |
|
FTD traceback due to watchdog on xlate_detach |
|
Audit syslog for SFR module/7000/8000 devices uses TCP instead of UDP for syslog communication |
|
LINA traceback on ASA in HA Active Unit repeatedly |
|
FILE RESUME BLOCK being randomly thrown causing access issues on files from SMB share. |
|
natd thread of nfm_exceptiond uses about 90% to 100% CPU time |
|
USGv6 Failures From Kernel Upgrade [3.10 to 4.14] |
|
2100 upgrade failure in 000_start/125_verify_bundle.sh when gateway IP improperly set |
|
Evaluate Cisco 8000 series for CVE-2019-11815 |
|
Cisco ASA and FTD Software WebVPN CPU Denial of Service Vulnerability |
|
ASA 9.9.2 Clientless WebVPN - HTML entities are incorrectly decoded when processing HTML |
|
Upload an update gives "update request entity too large" error when using CAC(HTTPS Client Certs) |
|
URL Filtering Shows All URLs as Uncategorized |
|
Policy deploy failure 6.5.0-1148 post upgrade with CC mode with openSSL call during SSL pol Export |
|
On reset CD not clearing its flags[parseFailoverReqIssued] which prevents further node join attempts |
|
ASA on Firepower 2100: Excessive amount of DNS queries on Management Interface |
|
Linux Kernel sas_expander.c Race Condition Arbitrary Code Execution ... |
|
LINA Traceback after upgrade to 9.12.2.1 |
|
ASA failover LANTEST messages are sent on first 10 interfaces in the configuration. |
|
Snort processes dump core with memory corruption on Series 3 devices |
|
Policy Deployment Failure due to Special Characters & encoding |
|
VPN Pre-deploy validations takes around 20 seconds for each device |
|
Traceback: "saml identity-provider" command will crash multi-context ASAs |
|
ASA may traceback due to SCTP traffic despite fix CSCvj98964 |
|
When deleting context the ssh key-exchange goes to Default GLOBALLY! |
|
Firepower Dynamic Snort Rules are Disabled After a Deployment Involving a Snort Reload |
|
FTD LINA traceback at DATAPATH-8-15821 |
|
Evaluation of sfims for TCP_SACK |
|
"ssl trust-point" command will be removed when restoring backup via CLI |
|
ASA IKEv2 - ASA sends additional delete message after initiating a phase 2 rekey |
|
Watchdog on ASAv when logging to buffer |
|
FTD Firepower 2100: external authentication fails if bind user password contains special characters |
|
GTP response messages with non existent cause are getting dropped with error message TID is 0 |
|
Memory leak observed when ASA-SFR dataplane communication flaps |
|
ENH: ASA Cluster debug for syn cookie issues |
|
Fail to Wire configuration disabled for multiple interface-pair inline-sets during FTD upgrades |
|
lost heartbeat causing reload |
|
Security Intelligence does not drop HTTPS connections to blacklisted URLs when SSL policy is enabled |
|
ASA is unable to verify the file integrity |
|
FTD 4150 VPN s2s deployment failure with 6K spokes |
|
FTD/ASA : Traceback in Datapath with assert snp_tcp_intercept_assert_disabled |
|
SNMPv3 User(s) deleted after upgrade |
|
Failed SSH Login attempts not being exported via syslog |
|
Warrning "There is an empty group in the source networks" in SSL policy |
|
SSL VPN may not be able to establish due to SSL negotiation issue |
|
User login fails into FMC GUI for LDAP user if the password contains SPACE in the string |
|
File policy not inspecting some malware document (.doc) and Adobe flash (.swf) files. |
|
ASA traceback observed when moving EZVPN spokes to the device. |
|
Dual stacked ASAv manual failover issues |
|
ASA5515-K9 standby traceback in Thread Name ssh |
|
Slow device related REST API calls |
|
ASA Traceback on Saleen in Thread Name: IPv6 IDB |
|
Disable asp load-balance per-packet functionality from fp2100 until all bugs fixed |
|
Traceback: Cluster unit lina assertion in thread name:Cluster controller |
|
ASA cluster does not flush OSPF routes |
|
Slow "securityzones" REST API |
|
ASA:BGP recursive route lookup for destination 3 hop away is failing. |
|
F_RNA_EVENT_LIMIT for MC4000 should be 20 million |
|
Connections fail to replicate in failover due to failover descriptor mis-match on port-channels |
|
ASA generates incorrect error message about PCI cfg space when enumerating Internal-Data0/1 |
|
Cannot add neighbor in BGP when the neighbor is on the same subnet as one interface |
|
VPN events between 12 and 1 PM UTC are not displayed on the FMC |
|
Flow Offload Hashing Change of Behavior |