-
1
- #1
Product Support Notice PSN006198
Product Support Notice
IP Office 11.1.3 is a minor software release with the following corrective content and minor enhancements. The details of the
features will be listed in the Tech Bulletin and documentation issued along with the 11.1.3 release. (Planned GA date 27th June 2023)
–Workplace Auto-Answer
–Self Contact Avatar
–46xxspecials.txt
–CEC Updates (cert levels)
–Hardware obsolescence (PRI/VCM)
IP Office 11.1.3.0 will contain only the following vulnerability fixes:
• WebManager and Webcontrol - Web Manager security response returned plain-text from the application
• WebManager and Webcontrol Platform and Software Versions Revealed - The server software versions used by the
application are revealed by the web server.
• External researcher Authenticated user file intervention - one-X portal File upload Vulnerability
Any future 11.1.3.x service packs will only contain bug fixes from Customer Found Defects (CFDs). There will not be any additional
CVE/vulnerability updates. Any further CVE’s and vulnerabilities will only be addressed in IP Office 12.0.
IP Office 12.0 will be based on Rocky Linux and will include regular CVE/vulnerability updates identified in RLSAs (Rocky
Linux Security Advisories) for robust security protection.
Product Support Notice
IP Office 11.1.3 is a minor software release with the following corrective content and minor enhancements. The details of the
features will be listed in the Tech Bulletin and documentation issued along with the 11.1.3 release. (Planned GA date 27th June 2023)
–Workplace Auto-Answer
–Self Contact Avatar
–46xxspecials.txt
–CEC Updates (cert levels)
–Hardware obsolescence (PRI/VCM)
IP Office 11.1.3.0 will contain only the following vulnerability fixes:
• WebManager and Webcontrol - Web Manager security response returned plain-text from the application
• WebManager and Webcontrol Platform and Software Versions Revealed - The server software versions used by the
application are revealed by the web server.
• External researcher Authenticated user file intervention - one-X portal File upload Vulnerability
Any future 11.1.3.x service packs will only contain bug fixes from Customer Found Defects (CFDs). There will not be any additional
CVE/vulnerability updates. Any further CVE’s and vulnerabilities will only be addressed in IP Office 12.0.
IP Office 12.0 will be based on Rocky Linux and will include regular CVE/vulnerability updates identified in RLSAs (Rocky
Linux Security Advisories) for robust security protection.