STAGE Release 1.0.3
Bugfixes, Performance and Stability Improvements
STAGE
-
Security vulnerability bug fix for the STAGE Suite file. STAGE Versions 1.0.2 and lower of the STAGE server endpoint is vulnerable to HTTP Request Smuggling through a header-injection de-synchronization using Expect: 100-continue. An unauthenticated attacker can poison the request queue (RQP) to redirect legitimate user traffic, capture session cookies and authentication tokens from live users' requests, and trigger server-side requests to arbitrary hosts. This release fixes this critical security issue and should be applied without delay.
WebRTC Gateway
-
N/A
Debian 12 Node
-
N/A
RSM (Riedel Software Manager)
-
N/A
VSP APP
-
N/A
STAGE Release 1.0.2
Bugfixes, Performance and Stability Improvements
STAGE
-
Fixed an issue where STAGE cannot load more than 50 Active Directory users in the user management view
-
Fixed an issue that prevents the user from changing the TURN server configuration
-
Fixed an issue where custom group filters of the Active Directory are not applied correctly
WebRTC Gateway
-
Fixed an issue where Riedel Software Manager incorrectly flagged an updated WebRTC Gateway as problematic, even though the Gateway was functioning normally
Debian 12 Node
-
N/A
RSM (Riedel Software Manager)
-
N/A
VSP APP
-
N/A
STAGE Release 1.0.1
Bugfixes, Performance and Stability Improvements
STAGE
-
STAGE now supports the updated Login theme.
-
STAGE now supports selecting WebRTC-Gateways that have a matching Network Scope as the VSP Port which is selected in VSP APP or browser.
-
Fixed an issue where multiple Artist rings appeared offline and their ports were not displayed even though they were connected to STAGE.
-
Fixed an issue where, after a power loss on Artist, the registered Artist could appear offline in STAGE.
-
Fixed an issue where changing an Access Levels via a Group Membership is not automatically applied when the membership of a user has changed.
-
Fixed an issue where the synchronization status is inaccurate for large Active Directory environments.
-
Fixed an issue where Identity Provider group memberships are occasionally not updated automatically in STAGE.
WebRTC Gateway
-
Fixed an issue where the wrong firmware version number is shown after an update.
Debian 12 Node
-
The Node now supports extended logging information during the boot up phase.
RSM (Riedel Software Manager)
-
RSM now supports the update function for all STAGE components.
VSP APP
-
Fixed an issue where VSP does not support incoming and outgoing calls from a VSP to a SmartPanel with 2nd channel enabled.