Forum Discussion
Enhanced Managed Software Detection on Unix-based OSes...
Enhanced Managed Software Detection on Unix-based OSes
Background
For certain software on Unix-based OSes managed by a package manager, Nessus also has a specific local detection plugin that performs additional detection outside of the package manager. A complication arises when attempting to match detected software with any installed software packages to prevent false positives with backported versions.
Change
The logic for matching detected software with any potential corresponding software package has been improved for the plugins listed below.
Impact
Customers should expect improved managed detection, potentially resulting in a decrease in vulnerability detections for Apache Tomcat, Kubernetes, nginx, and Oracle Java on Unix-based OSes.
Plugins
130175 - Apache Tomcat Local Detection
112063 - Kubernetes Installed (Linux)
136340 - nginx Installed (Linux/UNIX)
64815 - Oracle Java Runtime Environment (JRE) Detection (Unix)
Target Release Date
4 March 2021
----------------------------------------------------------------------------------------------------
Tenable Research Release Highlights are posted in advance of significant new releases or updates to existing plugins or audit files that are important for early customer notification.