Cumulative Update 4


This section introduces the updates in EnOS 2.3 CU4.

Core

IAM


Issue/New Feature

Fix/Enhancement

Impact (if any)

With Multi-Factor Authentication (MFA) enabled, users can still log in to EnOS Management Console directly with a username and password occasionally.

Fixed

None

New Feature

Added a built-in policy named Application Registration Administrator, users, user groups, or service accounts granted with this policy can have access to all functions in Application Registration and related APIs.

None

Security fixes:
  • CVE-2022-22965

  • CVE-2022-22978

  • CVE-2016-1000027

Fixed

None

IoT Hub

Device Connectivity & Management Service


Issue/New Feature

Fix/Enhancement

Impact (if any)

Security fixes:
  • CVE-2016-3088

  • CVE-2016-1000031

  • CVE-2018-20433

  • CVE-2021-37404

  • CVE-2022-25168

  • CVE-2022-26612

  • CVE-2022-22965

Fixed

None

Device Integration Service


Issue/New Feature

Fix/Enhancement

Impact (if any)

A published integration flow sends its heartbeats for monitoring every 20 seconds and the heartbeats are written to the database every 20 seconds, putting more load on the database memory.

Cache heartbeats locally, merge them once per minute, and write them to the database for lower frequency.

None

Enterprise Data Platform

Data Catalog


Issue/New Feature

Fix/Enhancement

Impact (if any)

Security fix: CVE-2016-1000027

Fixed

None

Data Synchronization


Issue/New Feature

Fix/Enhancement

Impact (if any)

If an Oracle data source is registered by the service name, the data cannot be previewed or synced.

Fixed

None

When configuring data synchronization tasks for data source types of Hive, data cannot be previewed.

Fixed. Data Preview is available after you select the queue and the source table.

None

If the synchronized source table of Hive data source type has no permission, the interface returns null. This is the same result the interface returns when there is a service exception problem, which makes it difficult to determine the cause.

Fixed. The message “Source table access exception, please contact your system administrator.” appears when you select the source table of Hive data source type with no permission.

None

Security fixes:
  • CVE-2022-25168

  • CVE-2022-26612

  • CVE-2016-1000027

Fixed

None

Data Federation


Issue/New Feature

Fix/Enhancement

Impact (if any)

Security fix: CVE-2022-40664

Fixed

None

Stream Processing


Issue/New Feature

Fix/Enhancement

Impact (if any)

Security fixes:
  • CVE-2022-22965

  • CVE-2020-5413

  • CVE-2016-1000027

Fixed

None

Batch Processing


Issue/New Feature

Fix/Enhancement

Impact (if any)

Security fixes:
  • CVE-2022-25168

  • CVE-2022-26612

  • CVE-2016-1000027

Fixed

None

Metric Management (Preview)


Issue/New Feature

Fix/Enhancement

Impact (if any)

Security fix: CVE-2016-1000027

Fixed

None

Application Enablement Platform

Single Sign-On Service


Issue/New Feature

Fix/Enhancement

Impact (if any)

Security fixes:
  • CVE-2018-1260

  • CVE-2202-22965

  • CVE-2016-1000027

Fixed

None

Enterprise Container Platform


Issue/New Feature

Fix/Enhancement

Impact (if any)

Security fix: CVE-2016-1000027

Fixed

None