Tenable Security Center 2024 Release Notes

Tip: You can subscribe to receive alerts for Tenable documentation updates.

These release notes are listed in reverse chronological order. To jump to a place in the release notes, use the list to the right.

Tenable Security Center Patch 202412.1-6.4.5 (2024-12-20)

Apply this patch to Tenable Security Center installations running versions 6.4.5. This patch updates PHP to version 8.2.26 and OpenSSL to version 3.0.15.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202412.1-6.4.0 (2024-12-20)

Apply this patch to Tenable Security Center installations running versions 6.4.0. This patch updates PHP to version 8.2.26 and OpenSSL to version 3.0.15.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202412.1-6.3.x (2024-12-20)

Apply this patch to Tenable Security Center installations running versions 6.3.0. This patch updates PHP to version 8.2.26 and OpenSSL to version 3.0.15.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center 6.5.1 Release Notes (2024-12-11)

You can download the update files from the Tenable Security Center Downloads page.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Note: Migrating from a Tenable Security Center on-prem deployment to Tenable Enclave Security is supported only on Red Hat Enterprise Linux 9.

Tenable Security Center 6.5.0 Release Notes (2024-12-05)

You can download the update files from the Tenable Security Center Downloads page.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Note: If you have more than 10,000 active IPs and you upgrade to Tenable Security Center 6.5.0 from version 6.2.1 or earlier, you must update some values in the Apache configuration file as part of the upgrade process. For more information, see Update the Apache Configuration File in the Tenable Security Center User Guide.

Note: If you have more than 100,000 assets and you upgrade to Tenable Security Center 6.5.0, you must configure an external PostgreSQL database. For more information, see Connect an External PostgreSQL Server in the Tenable Security Center User Guide.

Tenable Security Center 6.4.5 Release Notes (2024-09-03)

Tenable Security Center 6.4.5 is a maintenance release that rolls up the 202408.1-6.x (2024-08-13) and 202407.1-6.x (2024-07-09) 6.4.0 security patches. You can download the update files from the Tenable Security Center Downloads page.

Note: Migrating from a Tenable Security Center on-prem deployment to Tenable Enclave Security is supported only on Red Hat Enterprise Linux 9.

Note: Tenable Security Center 6.4.x is the last version that will support Red Hat Enterprise Linux 7 64-bit and CentOS 7 64-bit.

Tenable Security Center Patch 202408.1-6.x (2024-08-13)

Apply this patch to Tenable Security Center installations running versions 6.4.0 and 6.3.0. This patch updates Apache HTTP Server to version 2.4.62 and curl to version 8.8.0.

Note: When installing both patches 202408.1 and 202407.1, you must install the July patch (202407.1) first. This ensures all vulnerabilities are properly remediated and will prevent compatibility issues which may cause instability in Tenable Security Center.

Note: This release includes a fix for multiple vulnerabilities. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202408.1-6.2.1 (2024-08-13)

Apply this patch to Tenable Security Center installations running version 6.2.1. This patch updates Apache HTTP Server to version 2.4.62 and curl to version 8.8.0.

Note: When installing both patches 202408.1 and 202407.1, you must install the July patch (202407.1) first. This ensures all vulnerabilities are properly remediated and will prevent compatibility issues which may cause instability in Tenable Security Center.

Note: This release includes a fix for multiple vulnerabilities. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202407.1-6.x (2024-07-09)

Apply this patch to Tenable Security Center installations running the following versions to address CVE-2024-5458 and CVE-2024-5585:

  • 6.3.0 (Critical Severity) - This patch updates Apache to version 2.4.59 and PHP to version 8.2.20.

  • 6.4.0 (High Severity) - This patch updates PHP to version 8.2.20. Tenable Security Center 6.4.0 already runs Apache 2.4.59. For more information, see the Tenable Product Security Advisory for the 6.4.0 release.

Note: When installing both patches 202408.1 and 202407.1, you must install the July patch (202407.1) first. This ensures all vulnerabilities are properly remediated and will prevent compatibility issues which may cause instability in Tenable Security Center.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory for patch 202407.1.

Tenable Security Center Patch 202407.1-6.2.1 (2024-07-09)

Apply this patch to Tenable Security Center installations running version 6.2.1. This patch updates Apache to version 2.4.59 and PHP to version 8.2.20 to address CVE-2024-5458 and CVE-2024-5585. This is a Critical Severity patch for Tenable Security Center 6.2.1.

Note: When installing both patches 202408.1 and 202407.1, you must install the July patch (202407.1) first. This ensures all vulnerabilities are properly remediated and will prevent compatibility issues which may cause instability in Tenable Security Center.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory for patch 202407.1.

Tenable Security Center 6.4.0 Release Notes (2024-06-10)

You can download the update files from the Tenable Security Center Downloads page.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202403.1-6.2.1 (2024-03-25)

Apply this patch to Tenable Security Center installations running versions 6.2.1. This patch updates SQLite to 3.44.0 to address CVE-2023-7104 and CVE-2024-1367.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202403.1-6.2.0 (2024-03-25)

Apply this patch to Tenable Security Center installations running versions 6.2.0. This patch updates SQLite to 3.44.0 to address CVE-2023-7104 and CVE-2024-1367.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202403.1-6.1.1 (2024-03-25)

Apply this patch to Tenable Security Center installations running versions 6.1.1. This patch updates SQLite to 3.44.0 to address CVE-2023-7104 and CVE-2024-1367.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202403.1-5.23.1 (2024-03-25)

Apply this patch to Tenable Security Center installations running versions 5.23.1. This patch updates SQLite to 3.44.0 to address CVE-2023-7104 and CVE-2024-1367.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202402.1 (2024-02-15)

Apply this patch to Tenable Security Center installations running versions 6.3.0. This patch resolves an issue with OpenShift Container Platform credentials, where the Token field truncates and affects scan results.

Tenable Security Center 6.3.0 Release Notes (2024-02-14)

You can download the update files from the Tenable Security Center Downloads page.

Note: Tenable Security Center 6.3.0 includes a fix for an Apache memory leak issue. If you have more than 10,000 active IPs and you upgrade to Tenable Security Center 6.3.0 from a previous version, you must update some values in the Apache configuration file as part of the upgrade process. For more information, see Update the Apache Configuration File.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.