Actions

ICX 1.5.3.X - Release Notes: Difference between revisions

From Zenitel Wiki

 
(One intermediate revision by the same user not shown)
Line 29: Line 29:


==Security fixes and improvements==
==Security fixes and improvements==
===MTN-4791 Security Update ==
===MTN-4791 Security Update ===
Resolved vulnerabilities related to:
Resolved vulnerabilities related to:
*CVE-2025-59814 - Unauthenticated Union based SQL-injection password field
*CVE-2025-59814 - Unauthenticated Union based SQL-injection password field
Line 44: Line 44:
'''Action''': Upgrade ICX-AlphaCom to 1.5.3.3
'''Action''': Upgrade ICX-AlphaCom to 1.5.3.3


===MTN-4843 Fixed SQL injection vulnerabilities in billing web===
===MTN-4843 Security Update ===
Resolved vulnerabilities related to:
* CVE-2025-64092 - Unauthenticated SQL-injection – Billing Administrator


'''Action''': Upgrade ICX-AlphaCom to 1.5.3.3




<br>
<br>





Latest revision as of 10:44, 4 December 2025

Previous Release - ICX 1.4.3.X - Release Notes

This article provides the release notes for ICX-500, ICX-510 and ICX-Core software 1.5.3.x with incremental bug fix releases. This release notes describe new features, improvements and issues fixed after ICX 1.4.3.x.

General information

vsfx is a firmware archive for the ICX-500/510 Intelligent Gateway platform.

  • vsfx-1.5.3.x{-n}.swu - Used for standard in-field upgrades
  • vsfx-prod-1.5.3.x{n}.img.zip - Used in-field recovery and major system upgrades (SD-Card update)
  • vsfx-prod-1.5.3.x{n}.zip - Used in production upgrade only.
Note icon
  • The first 4 numbers in version directly links to the the ICX-Core version.
  • The last optional "-n" number is added for vsfx build with only platform changes form the first ICX-Core build for vsfx.''


ICX-Core software is an "apt" installation package for Ubuntu 22.04.x LTS Server containing the same functional capabilities as the ICX-500 Intelligent Gateway platform.

  • ICX-Core-01.00-jammy-1.5.3.X.apt.tar - Used for installation from the Ubuntu shell or from ICX-Web interface on already running ICX-Core systems.

Software Upgrade information

ICX 1.5.3.3

Release info

ICX Version: 1.5.3.3
Date: 02.12.2025
Status: General Availability

Security fixes and improvements

MTN-4791 Security Update

Resolved vulnerabilities related to:

  • CVE-2025-59814 - Unauthenticated Union based SQL-injection password field
  • CVE-2025-59815 - Authenticated Remote Code Execution
  • CVE-2025-59816 - Authenticated Union based SQL-injection “Search input” field
  • CVE-2025-59819 - Unauthenticated RCE - Billing Administrator

Action: Upgrade ICX-AlphaCom to 1.5.3.3

MTN-4842 Security Update

Resolved vulnerabilities related to:

  • CVE-2025-64093 - Unauthenticated RCE - Billing Administrator

Action: Upgrade ICX-AlphaCom to 1.5.3.3

MTN-4843 Security Update

Resolved vulnerabilities related to:

  • CVE-2025-64092 - Unauthenticated SQL-injection – Billing Administrator

Action: Upgrade ICX-AlphaCom to 1.5.3.3



MediaWiki spam blocked by CleanTalk.