Maintenance Releases - Release Notes - Cortex XSIAM - Cortex - Security Operations

Cortex XSIAM Release Notes

Product
Cortex XSIAM
Creation date
2024-11-18
Last date published
2025-03-16
Category
Release Notes
Abstract

Learn more about current maintenance releases of the Cortex XSIAM Broker VM and XDR Collectors.

Cortex XSIAM includes a number of features that are updated with every Cortex XSIAM Release. The Cortex XSIAM Broker VM and XDR Collectors are released with their own version number, and can include additional changes that are integrated in a separate maintenance release. For more information about previous maintenance releases, see Previous Maintenance Releases.

The Broker VM major 26.0.116 release was released as part of the release of Cortex XSIAM 2.5 on February 2, 2025.

The following table describes the changes integrated on the Broker VM maintenance version 26.0.119 released on February 16, 2025 as part of the Cortex XSIAM 2.5 release.

Issue ID

Description

CRTX-154307

When deployed in a cluster, an issue that caused the Broker VM to fail health-checks against the flow-balancer was fixed.

The following table describes the changes integrated on the Broker VM maintenance version 26.100.3 released on March 9, 2025 as part of the Cortex XSIAM 2.5 release.

Issue ID

Description

CRTX-156592

When the Broker VM was deployed over Amazon Web Services (AWS), an issue that prevented a user from changing their default password in the web user interface was fixed.

CRTX-156693

When the Broker VM was deployed over Google Cloud Platform (GCP), an issue that prevented the web user interface from loading was fixed.

CRTX-157484

The Broker VM has been enhanced to now better recover from Redis DB occasional corruptions.

CRTX-157843

When the Broker VM was deployed over Alibaba Hypervisor, an issue that prevented the web user interface from loading was fixed.

CRTX-158875

When working with DHCP, an issue that caused rare IP address loss after a Broker VM upgrade is now fixed.

The following table describes the changes integrated on the Broker VM maintenance version 26.100.10 released on March 16, 2025 as part of the Cortex XSIAM 2.5 release.

ISSUE

DESCRIPTION

CRTX-156592

When the Broker VM was deployed over Amazon Web Services (AWS), an issue that prevented a user from changing their default password in the web user interface was fixed.

CRTX-156693

When the Broker VM was deployed over Google Cloud Platform (GCP), an issue that prevented the web user interface from loading was fixed.

CRTX-157484

The Broker VM has been enhanced to now better recover from Redis DB occasional corruptions.

CRTX-157843

When the Broker VM was deployed over Alibaba Hypervisor, an issue that prevented the web user interface from loading was fixed.

CRTX-158575

In certain scenarios, there were issues with the Broker VM Agent proxy content cache, which are now fixed.

CRTX-158875

When working with DHCP, an issue that caused rare IP address loss after a Broker VM upgrade is now fixed.

CRTX-159571

The Broker VM log persistency layer is now more stable for high memory deployments.

CRTX-160955

An issue that affected removing static routes in the Broker VM network configuration is now fixed.

CRTX-161069

The Broker VM FTP Collector applet is fixed so when it's deployed with multiple FTP servers, the applet validates the files from the correct source and now collects the data.

The XDR Collectors major release for Windows 1.5.0.1733 and Linux 1.5.0.1695 was released as part of the release of Cortex XSIAM 2.5 on February 16, 2025.

The following table describes the changes integrated for this release:

FEATURE/ISSUE

DESCRIPTION

New XDR Collector release versions for supporting different versions of Windows

To provide compatibility to older and newer versions of Windows, Cortex XSIAM now supports the following XDR Collector major versions:

  • XDRC 1.4.3 (Old line): Supports Windows 8 and Windows Server 2012 R2 versions, including supported older versions. These versions will be maintained in their current state and will only receive critical fixes going forward. This version is based on the existing 1.4.X XDRC line.

  • XDRC 1.5.0 (New line): Supports Windows 10 and above OS versions. These versions will receive all new features and development going forward, including OpenSSL 3+. This version is based on the new 1.5.X XDRC release.

CPATR-25963

An issue with the XDR Collectors checking component tags is now fixed that sometimes caused duplicate logs, unnecessary downloads, and redundant copying operations.

CPATR-27427

An issue with an HTTP header in the XDR Collectors server is now fixed that caused duplicate logs in some cases.

The XDR Collectors major release for Windows 1.4.3.1686 was released as part of the release of Cortex XSIAM 2.5 on February 16, 2025.

The following table describes the changes integrated for this release:

FEATURE/ISSUE

DESCRIPTION

New XDR Collector release versions for supporting different versions of Windows

To provide compatibility to older and newer versions of Windows, Cortex XSIAM now supports the following XDR Collector major versions:

  • XDRC 1.4.3 (Old line): Supports Windows 8 and Windows Server 2012 R2 versions, including supported older versions. These versions will be maintained in their current state and will only receive critical fixes going forward. This version is based on the existing 1.4.X XDRC line.

  • XDRC 1.5.0 (New line): Supports Windows 10 and above OS versions. These versions will receive all new features and development going forward, including OpenSSL 3+. This version is based on the new 1.5.X XDRC release.

CPATR-25963

An issue with the XDR Collectors checking component tags is now fixed that sometimes caused duplicate logs, unnecessary downloads, and redundant copying operations.

CPATR-27427

An issue with an HTTP header in the XDR Collectors server is now fixed that caused duplicate logs in some cases.