Release Notes

Table Of Contents
3. Known Issues and Vulnerabilities Addressed
46 of 69
Simultaneously enforcing configuration to the NAC while
configuring users on the Guest and IoT Manager sometimes
resulted in the NAC returning an Internal Server Error message.
01916208
The Use RADIUS Accept Policy link in the Control authorization
rules configuration opened an empty Edit Policy Mapping dialog.
------
The Auth. Access Type for ExtremeControl engine devices was
not set to Manual Radius Configuration.
------
ExtremeControl was not using CTRON-ALIAS-MIB as the
mechanism for MAC to IP resolution via SNMP for
ExtremeControl engines.
01935200
The invert option for Authentication Method rule matching did
not work properly in ExtremeControl.
1937075
The ExtremeControl Assessment agent for OSX did not fully
support 64-bit operating systems.
01925944
01932152
Values in ExtremeControl location groups could not be greater
than 512 characters.
01937960
01941399
For Guest and IoT Manager in ExtremeControl, the Record
Enabled checkbox accessibility for users could not be managed
by administrators.
01916229
The background, title, brand logo, font type and font color on the
Provisioner Login page for Guest and IoT Manager were not
customizable.
01916189
3.5 Vulnerabilities Addressed
This section presents the vulnerabilities addressed in Extreme Management
Center 8.4:
l The following vulnerabilities were addressed in the Extreme Management Center,
ExtremeControl, and ExtremeAnalytics engine images:
l CVE-2018-0500, CVE-2019-5481, CVE-2019-5482, CVE-2018-18074, CVE-2019-
17546, CVE-2019-14973, CVE-2018-10779, CVE-2018-12900, CVE-2019-7663,
CVE-2018-17000, CVE-2018-19210, CVE-2019-6128, CVE-2018-1000300, CVE-
2018-1000301, CVE-2018-1000303, CVE-2019-18408, CVE-2018-17456, CVE-
2019-16056, CVE-2019-16935, CVE-2019-14287, CVE-2019-6977, CVE-2019-