Branch: refs/heads/2.1.0
Home:
https://github.com/Checkmk/checkmk
Commit: b635bb3c2e264d319b58d802d26ec9031e3c7eed
https://github.com/Checkmk/checkmk/commit/b635bb3c2e264d319b58d802d26ec9031…
Author: Hannes Rantzsch <hannes.rantzsch(a)checkmk.com>
Date: 2023-08-07 (Mon, 07 Aug 2023)
Changed paths:
A .werks/15193
M omd/packages/omd/omdlib/backup.py
Log Message:
-----------
15193 Exclude agent bakery file cache from omd backups
Temporary files created by the agent bakery when baking agents are now no longer included
in backups.
These files needlessly took up space in the backups, although they are not needed.
Specifically, this affects files in the directory
<tt>var/check_mk/agents/.files_cache</tt>.
Baked agents are still included in backups.
Change-Id: I2cbf6cb5439a4ff9dda23ab0c25e94f864b7f377
Commit: 6469d83df4405f4d71a3e3f381d210c406fe5389
https://github.com/Checkmk/checkmk/commit/6469d83df4405f4d71a3e3f381d210c40…
Author: Hannes Rantzsch <hannes.rantzsch(a)checkmk.com>
Date: 2023-08-08 (Tue, 08 Aug 2023)
Changed paths:
A .werks/15194
M cmk/base/core_config.py
M tests/unit/cmk/base/test_core_config.py
Log Message:
-----------
15194 SEC Fix command injection via RestAPI / Password Store
Prior to this Werk, users with the permissions to (a) use the RestAPI, (b) create
passwords in the password store, and (c) create active checks were able to run arbitrary
commands on the site.
This issue was found during internal code review.
<b>Affected Versions</b>:
LI: 2.0.0
LI: 2.1.0
LI: 2.2.0 prior to version 2.2.0p4
Note that at the point of publishing this Werk and fix, the current version 2.2.0 was
already not affected by this issue anymore, as the issue was already mitigated by Werk
#15889.
<b>Indicators of Compromise</b>:
Check the password store for passwords with unusual identifiers, review add-password
events in the audit log.
<b>Vulnerability Management</b>:
We have rated the issue with a CVSS Score of 8.8 (High) with the following CVSS vector:
<tt>CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H</tt>.
We have assigned CVE <tt>CVE-2023-31209</tt>.
<b>Changes</b>:
This Werk adds proper sanitization of the affected parameter on core commands.
CMK-14149
Change-Id: Id7087d6d57e6fc62f01dff8543737f880740e676
Commit: 09b63f6f97ae2b39d12607ac8bd4b2518d8f1ee4
https://github.com/Checkmk/checkmk/commit/09b63f6f97ae2b39d12607ac8bd4b2518…
Author: Checkmk release system <feedback(a)checkmk.com>
Date: 2023-08-08 (Tue, 08 Aug 2023)
Changed paths:
M agents/check_mk_agent.aix
M agents/check_mk_agent.freebsd
M agents/check_mk_agent.hpux
M agents/check_mk_agent.linux
M agents/check_mk_agent.macosx
M agents/check_mk_agent.netbsd
M agents/check_mk_agent.openbsd
M agents/check_mk_agent.openvms
M agents/check_mk_agent.openwrt
M agents/check_mk_agent.solaris
M agents/cmk-agent-ctl/src/constants.rs
M agents/plugins/apache_status.py
M agents/plugins/asmcmd.sh
M agents/plugins/db2_mem
M agents/plugins/dnsclient
M agents/plugins/hpux_lunstats
M agents/plugins/hpux_statgrab
M agents/plugins/ibm_mq
M agents/plugins/isc_dhcpd.py
M agents/plugins/jar_signature
M agents/plugins/kaspersky_av
M agents/plugins/lnx_container_host_if.linux
M agents/plugins/lnx_quota
M agents/plugins/lvm
M agents/plugins/mailman_lists
M agents/plugins/mk_apt
M agents/plugins/mk_ceph
M agents/plugins/mk_cups_queues
M agents/plugins/mk_db2.aix
M agents/plugins/mk_db2.linux
M agents/plugins/mk_docker.py
M agents/plugins/mk_errpt.aix
M agents/plugins/mk_filehandler
M agents/plugins/mk_filestats.py
M agents/plugins/mk_haproxy.freebsd
M agents/plugins/mk_informix
M agents/plugins/mk_inotify.py
M agents/plugins/mk_inventory.aix
M agents/plugins/mk_inventory.linux
M agents/plugins/mk_inventory.solaris
M agents/plugins/mk_iptables
M agents/plugins/mk_jolokia.py
M agents/plugins/mk_logins
M agents/plugins/mk_logwatch.py
M agents/plugins/mk_mongodb.py
M agents/plugins/mk_mysql
M agents/plugins/mk_nfsiostat
M agents/plugins/mk_omreport
M agents/plugins/mk_oracle
M agents/plugins/mk_oracle_crs
M agents/plugins/mk_postgres.py
M agents/plugins/mk_redis
M agents/plugins/mk_sap.aix
M agents/plugins/mk_sap.py
M agents/plugins/mk_sap_hana
M agents/plugins/mk_saprouter
M agents/plugins/mk_scaleio
M agents/plugins/mk_site_object_counts
M agents/plugins/mk_sshd_config
M agents/plugins/mk_suseconnect
M agents/plugins/mk_tinkerforge.py
M agents/plugins/mk_tsm
M agents/plugins/mk_zypper
M agents/plugins/mtr.py
M agents/plugins/netstat.aix
M agents/plugins/netstat.linux
M agents/plugins/netstat.solaris
M agents/plugins/nfsexports
M agents/plugins/nfsexports.solaris
M agents/plugins/nginx_status.py
M agents/plugins/plesk_backups.py
M agents/plugins/plesk_domains.py
M agents/plugins/runas
M agents/plugins/smart
M agents/plugins/symantec_av
M agents/plugins/unitrends_backup
M agents/plugins/unitrends_replication.py
M agents/plugins/vxvm
M agents/plugins/websphere_mq
M agents/plugins/zorp
M agents/windows/plugins/ad_replication.bat
M agents/windows/plugins/arcserve_backup.ps1
M agents/windows/plugins/citrix_farm.ps1
M agents/windows/plugins/citrix_licenses.vbs
M agents/windows/plugins/citrix_xenapp.ps1
M agents/windows/plugins/hyperv_vms.ps1
M agents/windows/plugins/hyperv_vms_guestinfos.ps1
M agents/windows/plugins/iis_app_pool_state.ps1
M agents/windows/plugins/kaspersky_av_client.vbs
M agents/windows/plugins/mcafee_av_client.bat
M agents/windows/plugins/megaraid.bat
M agents/windows/plugins/mk_dhcp_enabled.bat
M agents/windows/plugins/mk_inventory.vbs
M agents/windows/plugins/mk_msoffice.ps1
M agents/windows/plugins/mk_mysql.vbs
M agents/windows/plugins/mk_oracle.ps1
M agents/windows/plugins/msexch_dag.ps1
M agents/windows/plugins/msexch_database.ps1
M agents/windows/plugins/mssql.vbs
M agents/windows/plugins/netstat_an.bat
M agents/windows/plugins/rds_licenses.vbs
M agents/windows/plugins/rstcli.bat
M agents/windows/plugins/sansymphony.ps1
M agents/windows/plugins/storcli.bat
M agents/windows/plugins/tsm_checks.bat
M agents/windows/plugins/veeam_backup_status.ps1
M agents/windows/plugins/win_dhcp_pools.bat
M agents/windows/plugins/win_dmidecode.bat
M agents/windows/plugins/win_license.bat
M agents/windows/plugins/win_printers.ps1
M agents/windows/plugins/windows_broadcom_bonding.bat
M agents/windows/plugins/windows_if.ps1
M agents/windows/plugins/windows_intel_bonding.bat
M agents/windows/plugins/windows_multipath.vbs
M agents/windows/plugins/windows_os_bonding.ps1
M agents/windows/plugins/windows_tasks.ps1
M agents/windows/plugins/windows_updates.vbs
M agents/windows/plugins/wmic_if.bat
M agents/wnx/src/common/wnx_version.h
M bin/livedump
M bin/mkbackup
M bin/mkbench
M cmk/utils/version.py
M configure.ac
M defines.make
M docker/Dockerfile
Log Message:
-----------
Set version to 2.1.0p33
Commit: aa412d1ba6a37afbcef0d125ba0c9cfd9eef8536
https://github.com/Checkmk/checkmk/commit/aa412d1ba6a37afbcef0d125ba0c9cfd9…
Author: Sven Panne <sven.panne(a)checkmk.com>
Date: 2023-08-08 (Tue, 08 Aug 2023)
Changed paths:
M agents/check_mk_agent.aix
M agents/check_mk_agent.freebsd
M agents/check_mk_agent.linux
M agents/check_mk_agent.openbsd
M agents/check_mk_agent.openwrt
M agents/check_mk_agent.solaris
M agents/plugins/mk_ceph
M agents/plugins/mk_informix
M agents/plugins/mk_oracle
M agents/plugins/mk_redis
M agents/plugins/mk_sap_hana
M agents/plugins/mk_tsm
M agents/plugins/runas
M agents/z_os/check_mk_agent.wrapper
M scripts/check-omd-python-modules
M scripts/run-cargo-command
M tests/Makefile
Log Message:
-----------
Backported fixes for shellcheck 0.7.0 ... 0.8.0.
Change-Id: If48cecdcfbfc26ddf9233f85f4624eb2dcf4e338
Commit: c96349f7ca6059d4ca1030a07cc355fdd7c1baaa
https://github.com/Checkmk/checkmk/commit/c96349f7ca6059d4ca1030a07cc355fdd…
Author: Frans Fürst <frans.fuerst(a)checkmk.com>
Date: 2023-08-09 (Wed, 09 Aug 2023)
Changed paths:
A .werks/14614
M checkman/jolokia_generic
M checkman/jolokia_generic_rate
M checkman/jolokia_generic_string
M checkman/jolokia_info
M checkman/jolokia_jvm_garbagecollectors
M checkman/jolokia_jvm_memory
M checkman/jolokia_jvm_memory_pools
M checkman/jolokia_jvm_runtime
M checkman/jolokia_jvm_threading
M checkman/jolokia_jvm_threading_pool
M checkman/jolokia_metrics_app_sess
M checkman/jolokia_metrics_app_state
M checkman/jolokia_metrics_bea_queue
M checkman/jolokia_metrics_bea_requests
M checkman/jolokia_metrics_bea_sess
M checkman/jolokia_metrics_bea_threads
M checkman/jolokia_metrics_cache_hits
M checkman/jolokia_metrics_gc
M checkman/jolokia_metrics_in_memory
M checkman/jolokia_metrics_mem
M checkman/jolokia_metrics_off_heap
M checkman/jolokia_metrics_on_disk
M checkman/jolokia_metrics_perm_gen
M checkman/jolokia_metrics_requests
M checkman/jolokia_metrics_serv_req
M checkman/jolokia_metrics_threads
M checkman/jolokia_metrics_tp
M checkman/jolokia_metrics_uptime
M checkman/jolokia_metrics_writer
Log Message:
-----------
14614 FIX Jolokia: manpages indicated agent support for Linux only
This change adds `windows` to supported agents in jolokia related manpages.
Change-Id: I3011800341e45c72460ab0458b46dad677423cc5
Commit: e1c34b50e07f947bab3784b722942cfddd657fb1
https://github.com/Checkmk/checkmk/commit/e1c34b50e07f947bab3784b722942cfdd…
Author: Frans Fürst <frans.fuerst(a)checkmk.com>
Date: 2023-08-09 (Wed, 09 Aug 2023)
Changed paths:
A .werks/14611
M agents/plugins/mk_tsm
Log Message:
-----------
14611 FIX Missing monitoring data for plugins: tsm_stagingpools, tsm_storagepools
mk_tsm agent plugin would search for lines containing ` dsmserv ` (with leading and
trailing
spaces, which does not consider full paths like `/usr/bin/dsmserv`.
This change also allows for leading slashes (i.e. `( |/)dsmserv `).
Change-Id: I8cf6f1992c7f4478dec046ff5df4357c5299371a
Commit: 30667c7c43700f7995885b0755c62fe6fd1c5ee8
https://github.com/Checkmk/checkmk/commit/30667c7c43700f7995885b0755c62fe6f…
Author: Frans Fürst <frans.fuerst(a)checkmk.com>
Date: 2023-08-09 (Wed, 09 Aug 2023)
Changed paths:
M .werks/14611
Log Message:
-----------
fix Werk version for 14611
Change-Id: Ife5263d2e06a0f1ad686ab74b0fbca892dd15fec
Commit: 2f3c64a1d3ac18232d9669ea692b5c5877fd1890
https://github.com/Checkmk/checkmk/commit/2f3c64a1d3ac18232d9669ea692b5c587…
Author: Frans Fürst <frans.fuerst(a)checkmk.com>
Date: 2023-08-09 (Wed, 09 Aug 2023)
Changed paths:
M .werks/14611
Log Message:
-----------
Revert "fix Werk version for 14611"
This reverts commit 30667c7c43700f7995885b0755c62fe6fd1c5ee8.
Commit: 8cd0947f5e91554c9b0004638b66005ff294e392
https://github.com/Checkmk/checkmk/commit/8cd0947f5e91554c9b0004638b66005ff…
Author: Frans Fürst <frans.fuerst(a)checkmk.com>
Date: 2023-08-09 (Wed, 09 Aug 2023)
Changed paths:
R .werks/14611
M agents/plugins/mk_tsm
Log Message:
-----------
Revert "14611 FIX Missing monitoring data for plugins: tsm_stagingpools,
tsm_storagepools"
This reverts commit e1c34b50e07f947bab3784b722942cfddd657fb1.
Commit: e1fe9631f81ee8cd341486e6a5e8212a9741d5d1
https://github.com/Checkmk/checkmk/commit/e1fe9631f81ee8cd341486e6a5e8212a9…
Author: Frans Fürst <frans.fuerst(a)checkmk.com>
Date: 2023-08-09 (Wed, 09 Aug 2023)
Changed paths:
M .werks/14614
Log Message:
-----------
fix Werk version for 14614
Change-Id: Icf4d7395610d81863e7b21b693cc5c820b8af393
Commit: e11d8bddc415cbbe6af6b516b1dd83471727d276
https://github.com/Checkmk/checkmk/commit/e11d8bddc415cbbe6af6b516b1dd83471…
Author: Ronny Bruska <ronny.bruska(a)checkmk.com>
Date: 2023-08-09 (Wed, 09 Aug 2023)
Changed paths:
A .werks/15934
M cmk/gui/plugins/views/datasources.py
Log Message:
-----------
15934 FIX Fix selection for downtime commands
SUP-15191
Change-Id: I67c0ce670ee81e2e993a92a7e0e5c0c5c3b4dcd2
Commit: 9c9564ff3cf4007d22cf479851ff979e26f89b1c
https://github.com/Checkmk/checkmk/commit/9c9564ff3cf4007d22cf479851ff979e2…
Author: Benedikt Seidl <benedikt.seidl(a)checkmk.com>
Date: 2023-08-10 (Thu, 10 Aug 2023)
Changed paths:
A .werks/15290
M cmk/base/plugins/agent_based/df_section.py
Log Message:
-----------
15290 FIX df: Support block device UUIDs with spaces
Some block devices report UUIDs with spaces.
This can now be handled by the df check.
SUP-15108
Change-Id: I23e72a92072132881f492379ac599e3ddee53956
Compare:
https://github.com/Checkmk/checkmk/compare/529734c8e24e...9c9564ff3cf4