Known Issues

For your convenience, the release notes list the known issues for major releases. We do not list known issues for maintenance releases or patches.

If you have a support contract, you can use the Cisco Bug Search Tool to obtain up-to-date bug lists. You can constrain searches to bugs affecting specific platforms and versions. You can also search by bug status, bug ID, and for specific keywords.


Important

Bug lists are auto-generated once and are not subsequently updated. Depending on how and when a bug was categorized or updated in our system, it may not appear in the release notes. You should regard the Cisco Bug Search Tool as the source of truth.


Version 6.3.0 Known Issues

Table 1. Version 6.3.0 Known Issues

Bug ID

Headline

CSCvk74150

After FDM HA switch the deploy takes longer than 25 minutes on 6.3.0-1376

CSCvm14296

Cisco Firepower Threat Defense Software Multi-Instance Container Escape Vulnerabilities

CSCvm29525

After creating MAX number of LOM users you cannot login remotely using ipmitool

CSCvm32307

Need option to do packet capture on a Port channel Sub-interface

CSCvm37935

Sometimes rule evaluation is aborted on virtual devices due to lower default PPM threshold value

CSCvn07587

Network IPv6 range doesn't deploy correctly to lina

CSCvn12381

4140 Multi-Instance Not Load-Balancing Correctly with 4 Instances

CSCvn19074

MSP -Access Control Rule to Block with Reset for CIP Write application is not blocking

CSCvn19289

Multiple Vulnerabilities in curl

CSCvn32308

Restoring self backup on secondary requires license re-registrations

CSCvn44222

6.3.0-79: HA upgrade/deployment fails from from missing RAVPN diskfiles on secondary

CSCvn46121

Security Intelligence IP monitor Events are not sent to syslog if default action logs to syslog

CSCvn52181

FMC4500 : Noticed failures related to IPv6 configuration and NTP on console during baseline

CSCvn53145

Policy deploy throws "Variable set has invalid execulded values"

CSCvn67630

Govt UCAPL - Maximum Login Sessions through CLI - test case fails on 6.4.0-1088

CSCvn81898

Device name doesn't exist in a syslog message if syslog alerting for connection events is configured

CSCvo06696

FTD may drop conns through GRE tunnels if firewall receives GRE packet before inner packet

CSCvo15627

Maxfailedlogin for non ucapl user's set to 5 in ucapl mode

CSCvo17612

Return error messages when failing to retrieve objects from database

CSCvo19666

28 Core instance is achieving 20% lower performance than expected

CSCvo31831

Deleting a base policy does not delete the EOs of child policies

CSCvo37273

Adding a validation check in FMC UI to validate the object network configured in static route

CSCvo48771

FMC should check for configuration line length prior to deployment

CSCvo49295

RabbitMQ constantly fails to start with error "case_clause,undefined"

CSCvo49344

RabbitMQ malfunctions and does not recover after SFRemediateD is killed

CSCvo74233

FTD 6.3.0 traceback seen with tftp traffic

CSCvo77796

Slow deployment due to slower IntrusionPolicy step in global snapshot population

CSCvo81219

FP 2100: Reset should be direction aware similar to other platforms

CSCvo87456

Unable to mount SMBv1 share in 6.3.0

CSCvo90413

FTD-REST-API: HTML returned when wrong version passed in URL

CSCvp00236

Upgrading FMC to 6.3.0 fails with error UNABLE TO LOAD stricts.pm and FlyLoader.pm

CSCvp01515

ASA SFR: preprocessors won't be enabled, if enable dependency rules

CSCvp01542

FMC 6.3 Multitenancy/Domain LDAPS User/Group Download Failure Due to Certificate Location

CSCvp09972

connection event page is not displaying table on UI - max rows user preference is empty

CSCvp11760

Search-Index update fails due to missing Activity Event publish

CSCvp20985

Internet Download Manager detector doesn't match all flows

CSCvp24480

fmc-ha uip snapshot processing stuck in a loop.

CSCvp25581

in FMC-HA user_group_map entries are wiped out in split-brain

CSCvp25782

EventHandler core while pruning metadata cache

CSCvp26548

FDM upgrade fails due to objects validation failure

CSCvp30447

Syslog alerts are not sent to server when Global Rule Thresholding is disabled on Intrusion Policy

CSCvp45786

Not able to upload the STIX or Flat File Manually under Threat Intelligence Director

CSCvp55941

FILE RESUME BLOCK being randomly thrown causing access issues on files from SMB share.

CSCvp95663

InlineResult for IPS event missing metadata "Would have blocked"

CSCvq53902

Cisco Firepower Management Center Multiple Cross-Site Scripting Vulnerabilities

CSCvq65542

Disable asp load-balance per-packet functionality from fp2100 until all bugs fixed

CSCvq89794

FDM - user downloads not working with LDAPS

CSCvq93768

Lodash lodash Object.prototype Denial of Service Vulnerability

CSCvq93769

Bootstrap collapse Plugin Data-Parent Attribute Cross-Site Scripting V

CSCvq93770

Bootstrap tooltip Plugin Data-Container Property Cross-Site Scripting

CSCvq93771

Bootstrap scrollspy Data-Target Property Cross-Site Scripting Vulnerab

CSCvr06515

Access-control-config hit counter not incrementing

CSCvr33428

FMC generates Connection Events from a SYN flood attack

CSCvr52077

Variable set is not validated at deploy if it is not a part of AC rule

CSCvr72665

FMC upgrading to 6.3/6.4 shouldn't remove existing deprecated flexconfig

CSCvs33392

Known Key SSL decryption and connections can fail when servers are using unsupported TLS options

CSCvs55937

Deployment fails for FDM due to neo4j error

CSCvt00140

Series 3 sensors fail system restore to 6.3 and 6.4

CSCvt49334

On the 4120 sensor, the task delete is not removing the "task_xx" files from the cron.d directory

CSCvt55927

Unable to break HA in 6.4.0.9-34 FDM

CSCvt86650

Terracotta Quartz Scheduler initDocumentParser XML External Entity Vul

CSCvt86666

Apache Commons Compress ZipArchiveInputStream Denial of Service Vulner

CSCvt87127

Memcached lru Commands NULL Pointer Dereference Vulnerablity

CSCvt87141

GNU Wget set_file_metadata Information Disclosure Vulnerability

CSCvu69541

Query FMC using Ext. DB & unable to extract the 'url_category' from connection_log table as expected

CSCvu86734

FTD Backup and Restore does not restore the hostname of the device locally

CSCvu91792

SNMP IfDiscards OIDs for Internal-Data 0/0 and 0/1 wrong Values

CSCvv03258

FTD/LINA traceback and reload on process name lina

CSCvv54860

backup file can be extremely large when rabbitmq queue backed up