ID: 13930
Title: adjust Rule response format in REST API
Component: Core & setup
Level: 1
Class: Bug fix
Version: 2.2.0i1
The response of the Rule object has been changed from singular to plural in some cases.
Concretely, the following fields have been changed:
* host_tag -> host_tags
* host_label -> host_labels
* service_label -> service_labels
If you use statically typed language, you may have to recompile your auto generated API client.
ID: 14087
Title: Fix privilege escalation vulnerability
Component: Checks & agents
Level: 2
Class: Security fix
Version: 2.2.0i1
Previously to this Werk an attacker who could become a site user could replace the sites <tt>bin/unixcat</tt> by a custom executable.
The Checkmk agent would then run it as root.
With this Werk the agent now always calls one of the shipped <tt>unixcat</tt>s below <tt>/omd/versions/</tt>.
All maintained versions (>=1.6) are subject to this vulnerability. It is likely that also previous versions were vulnerable.
To check against possible exploitation make sure that the sites directory <tt>~MySite/bin</tt> points to <tt>/omd/versions/MySitesVersion/bin<tt>.
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H 8.2
CVE will be added here later
ID: 14156
Title: Fixed bug where bi aggregations were occasionally incomplete/missing
Component: BI
Level: 1
Class: Bug fix
Version: 2.2.0i1
The compiled aggregation trees were incomplete when a user with a restricted host/service view triggered the bi-compilation.
ID: 14155
Title: Sorter: Improved performance
Component: Multisite
Level: 1
Class: New feature
Version: 2.2.0i1
By using temporary caches, the sorters are now twice as fast.
This could improve performance for larger views by 1-2 seconds
ID: 14105
Title: Fix KeyError for "Site ID" painter if site is missing
Component: Multisite
Level: 1
Class: Bug fix
Version: 2.2.0i1
If the painter "Site ID" is used in views were the site is missing, e.g. "All
aggregations", the error "KeyError: 'site'" occurred.
ID: 14048
Title: check_icmp: Option to create one service per IP address
Component: Checks & agents
Level: 1
Class: New feature
Version: 2.2.0i1
Previously, when monitoring multiple IP addresses with an ICMP check,
results for all addresses would be shown in one service.
In case of many IP addresses, the user wouldn't have a good overview
over availability of a particular address.
Enabling option Setup -> Services -> HTTP, TCP, Email, ... ->
Check hosts with PING (ICMP Echo Request) -> Multiple services ->
Create a service for every pinged IP address creates one service
per IP address.
ID: 14030
Title: remove trailing single quote in clickable url
Component: Checks & agents
Level: 1
Class: Bug fix
Version: 2.2.0i1
Clickable links in the service summary now have the trailing single quote stripped if the check plugin quoted the url in single quotes.
ID: 13302
Title: Customize View: Improved performance when rendering painter/sorter/grouper dropdowns
Component: Multisite
Level: 1
Class: Bug fix
Version: 2.2.0i1
The GUI had problems displaying certain dropdown elements when there were more than 1000 tag groups.
ID: 14155
Title: Sorter: Improved performance
Component: Multisite
Level: 1
Class: New feature
Version: 2.2.0i1
By using temporary caches, the sorters are now twice as fast.
This could improve performance for larger views by 1-2 seconds