Tenable Security Center 2023 Release Notes

These release notes are listed in reverse chronological order. To jump to a place in the release notes, use the list to the right.

Tenable Security Center Patch 202312.1-6.x (2023-12-14)

Apply this patch to Tenable Security Center installations running versions 6.2.0, 6.1.1, 6.1.0, and 6.0.0. This patch updates Apache HTTP Server to version 2.4.58 to address CVE-2023-43622 and CVE-2023-45802.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202312.1-5.23.1 (2023-12-14)

Apply this patch to Tenable Security Center installations running version 5.23.1. This patch updates Apache HTTP Server to version 2.4.58 to address CVE-2023-43622 and CVE-2023-45802.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center 6.2.1 (2023-11-20)

You can download the update files from the Tenable Security Center Downloads page.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Caution: Tenable Security Center 6.2.1 includes an update for SimpleSAML. You will need to update your SAML audience URI from tenable.sc to https://tenable.sc. For SAML Authentication examples, see SAML Authentication XML Configuration Examples.

Tenable Security Center Patch 202310.2 (2023-10-31)

Apply this patch to Tenable Security Center installations running version 6.2.0. This patch resolves an issue with API errors due to scanID in the payload.

Tenable Security Center Patch 202310.1-6.2.0 (2023-10-31)

Apply this patch to Tenable Security Center installations running versions 6.2.0. This patch updates curl to version 8.4.0 to address CVE-2023-38545.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202310.1-6.x (2023-10-31)

Apply this patch to Tenable Security Center installations running versions 6.0.0, 6.1.0, and 6.1.1. This patch updates curl to version 8.4.0 to address CVE-2023-38545.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202310.1-5.23.1 (2023-10-31)

Apply this patch to Tenable Security Center installations running version 5.23.1. This patch updates curl to version 8.4.0 to address CVE-2023-38545.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center 6.2.0 (2023-10-10)

You can download the update files from the Tenable Security Center Downloads page.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Caution: Tenable Security Center 6.2.0 includes an update for SimpleSAML. You will need to update your SAML audience URI from tenable.sc to https://tenable.sc. For SAML Authentication examples, see SAML Authentication XML Configuration Examples.

Tenable Security Center Patch 202307.1-6.x (2023-07-25)

Apply this patch to Tenable Security Center installations running versions 6.0.0, 6.1.0, and 6.1.1. This patch updates OpenSSL to version 3.0.9 to address CVE-2023-2650.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202307.1-5.23.1 (2023-07-25)

Apply this patch to Tenable Security Center installations running version 5.23.1. This patch updates OpenSSL to version 1.1.1u to address CVE-2023-2650.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center 6.1.1 (2023-06-07)

You can download the update files from the Tenable Security Center Downloads page.

Tenable Security Center Patch 202304.1 (2023-04-25)

Apply this patch to Tenable Security Center installations running Tenable Security Center 5.22.0, 5.23.1, and 6.0.0. This patch updates PHP to version 8.1.16 to address CVE-2023-0568 and CVE-2023-0662.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center Patch 202304.0 (2023-04-12)

Apply this patch to Tenable Security Center installations running Tenable Security Center 6.1.0.

This patch resolves an issue with synchronization using Tenable One/Tenable Lumin, where Agent UUIDs with dashes in Asset Lists created issues with Tag definitions.

Tenable Security Center Patch 202303.2 (2023-03-28)

Apply this patch to Tenable Security Center installations running Tenable Security Center 5.22.0, 5.23.1, and 6.0.0. This patch updates Apache HTTP Server to version 2.4.56 to address CVE-2023-25690.

Note: This release includes a fix for a potential vulnerability. For more information, see the Tenable Product Security Advisory.

Tenable Security Center 6.1.0 (2023-03-22)

You can download the update files from the Tenable Security Center Downloads page.

Tenable Security Center Patch 202303.1-6.x (2023-03-01)

Apply this patch to Tenable Security Center installations running version 6.0.0. This patch updates OpenSSL to version 3.0.8 to address the following vulnerabilities:

Tenable Security Center Patch 202303.1-5.x (2023-03-01)

Apply this patch to Tenable Security Center installations running version 5.23.1. This patch updates OpenSSL to version 1.1.1t to address the following vulnerabilities:

Tenable Security Center Patch 202302.3 (2023-02-21)

Apply this patch to Tenable Security Center installations running Tenable Security Center 5.22.0 and 5.23.1. This patch updates libCurl to version 7.86.0 to address CVE-2022-42916.

Tenable Security Center Patch 202302.2 (2023-02-21)

Apply this patch to Tenable Security Center installations running Tenable Security Center 5.22.0, 5.23.1, and 6.0.0. This patch updates Apache HTTP Server to version 2.4.55 to address CVE-2022-37436.

Tenable Security Center Patch 202302.1 (2023-02-07)

Apply this patch to Tenable Security Center installations running Tenable Security Center 5.23.1. This patch fixes an issue where some users see a "scan progress not showing in Scan Results page" error while scanning.

Tenable Security Center 6.0.0 (2023-01-25)

You can download the update files from the Tenable Security Center Downloads page.