IMPORTANT: This site is planned to be decommissioned in 2026. Visit the Tanium Resource Center for all Tanium release notes, user guides, and support information. To view release notes in the Resource Center, see Tanium Release Notes.
IMPORTANT: If you are using semi-annual releases for on premises, see the Release notes for 2024H1 semiannual release, Release notes for 2024H2 semiannual release, or Release notes for 2025H1 semiannual release on the Tanium Resource Center.
Effective October 15, 2024: On prem release notes on the Tanium Knowledge Base are frozen. For release notes related to 7.4 or 7.5 Server and Solutions, see the Monthly updates for Tanium Version 7.4 and 7.5 Server and Solutions on the Tanium Resource Center.

Release Notes Patch (Version 3.15)

From Tanium Knowledge Base
Jump to navigation Jump to search

Tanium Patch 3.15.186

Release Date: 31 October 2023

Resolved Issues

  • Fixed an issue that could cause Windows 11 to fail to report correct patch applicability results when Windows Update for Business deferral settings are configured.
  • Fixed an issue that could cause Tanium Scan for Windows Patch scans to fail with the error "Invalid use of Null."

Tools Versions

  • Patch: 3.15.186
  • Tanium EUSS: 1.14.22
  • TaniumFileInfo: 3.21.4
  • TaniumExecWrapper: 3.21.4
  • TaniumUpdateSearcher: 7.4.4.1059
  • 7za: 23.01
  • active-user-sessions: 1.0
  • python38: 3.1.43
  • swmgrcx: 2.7.138

Known Issues

  • The Patch service and workbench immediately show errors after a Patch installation, until service startup completes.
  • Tanium Scan For Windows still has some known synchronization issues with certain WSUS environments.
  • When Tanium Patch instructs DNF to install a particular security advisory, DNF instead upgrades the latest applicable package. This issue affects patch lists and deployments when rules or manual patches are defined. Bug #2236266 has been filed with RedHat.
  • You cannot upgrade directly to this version of Tanium Patch from Tanium Patch 3.7 or earlier. If you are upgrading from Tanium Patch 3.7 or earlier, upgrade to Tanium Patch 3.13 as an intermediate step. Contact Tanium Support or your TAM for details.

Tanium Patch 3.15.184

Release Date: 24 October 2023

Resolved Issues

  • Fixed an issue that could cause Tanium Scan for Windows synchronizations to perform incomplete synchronizations and to repeatedly fail.

Tools Versions

  • Patch: 3.15.184
  • Tanium EUSS: 1.14.22
  • TaniumFileInfo: 3.21.4
  • TaniumExecWrapper: 3.21.4
  • TaniumUpdateSearcher: 7.4.4.1059
  • 7za: 23.01
  • active-user-sessions: 1.0
  • python38: 3.1.43
  • swmgrcx: 2.7.138

Known Issues

  • The Patch service and workbench show errors immediately after a Patch installation, until service startup completes.
  • Tanium Scan For Windows still has some known synchronization issues with certain WSUS environments.
  • When Tanium Patch instructs DNF to install a particular security advisory, DNF instead upgrades the latest applicable package. This issue affects patch lists and deployments when rules or manual patches are defined. Bug #2236266 has been filed with RedHat.
  • You cannot upgrade directly to this version of Tanium Patch from Tanium Patch 3.7 or earlier. If you are upgrading from Tanium Patch 3.7 or earlier, upgrade to Tanium Patch 3.13 as an intermediate step. Contact Tanium Support or your TAM for details.

Tanium Patch 3.15.182

Release Date: 17 October 2023

Improvements

  • Upgraded a third-party library to the most recent version.
  • Added legacy macOS Patch scanning support for macOS Sonoma 14.

Resolved Issues

  • Fixed an issue that caused Tanium Patch to fail to detect Cumulative Updates for Windows on Windows 11 endpoints configured with the DeferQualityUpdates policy using Group Policy, MDM, or the Windows Registry when using the Tanium Scan technique.
  • Fixed an issue that caused an incorrect contentDownloadPort to be set for Tanium Scan for Windows update URLs when syncing from an upstream WSUS source, resulting in download failures during Patch deployments.
  • Fixed an issue that caused Linux Repository Snapshots that referenced cdn.redhat.com to fail.
  • Fixed an issue that caused poor performance in the Patch performance due to excessive build up of Tanium Scan for Windows jobs.
  • Fixed an issue that could cause Tanium Scan for Windows metrics collection and database calls to degrade Patch service performance and cause Patch service outages.
  • Fixed an issue that caused Tanium Scan for Windows synchronization to indefinitely fail when the upstream server responds with an "InvalidAuthorizationCookie" error.

Tools Versions

  • Patch: 3.15.182
  • Tanium EUSS: 1.14.22
  • TaniumFileInfo: 3.21.4
  • TaniumExecWrapper: 3.21.4
  • TaniumUpdateSearcher: 7.4.4.1059
  • 7za: 23.01
  • active-user-sessions: 1.0
  • python38: 3.1.43
  • swmgrcx: 2.7.138

Known Issues

  • The Patch service and workbench show errors immediately after a Patch installation, until service startup completes.
  • Tanium Scan For Windows still has some known synchronization issues with certain WSUS environments.
  • When Tanium Patch instructs DNF to install a particular security advisory, DNF instead upgrades the latest applicable package. This issue affects patch lists and deployments when rules or manual patches are defined. Bug #2236266 has been filed with RedHat.
  • You cannot upgrade directly to this version of Tanium Patch from Tanium Patch 3.7 or earlier. If you are upgrading from Tanium Patch 3.7 or earlier, upgrade to Tanium Patch 3.13 as an intermediate step. Contact Tanium Support or your TAM for details.

Tanium Patch 3.15.172

Release Date: 3 October 2023

Improvements

  • Upgraded various third-party libraries to the most recent versions.

Resolved Issues

  • Fixed an issue that could cause Debian and Ubuntu endpoints to fail to download package files.
  • Fixed an issue that caused patches with the "Compliant Pending Restart" status to not be included in the Endpoint Compliance for Critical & Important Patches summary on the Patch homepage.

Tools Versions

  • Patch: 3.15.172
  • Tanium EUSS: 1.14.18
  • TaniumFileInfo: 3.21.4
  • TaniumExecWrapper: 3.21.4
  • TaniumUpdateSearcher: 7.4.4.1059
  • 7za: 23.01
  • active-user-sessions: 1.0
  • python38: 3.1.43
  • swmgrcx: 2.7.131

Known Issues

  • The Patch service and workbench show errors immediately after a Patch installation, until service startup completes.
  • Tanium Scan For Windows still has some known synchronization issues with certain WSUS environments.
  • When Tanium Patch instructs DNF to install a particular security advisory, DNF instead upgrades the latest applicable package. This issue affects patch lists and deployments when rules or manual patches are defined. Bug #2236266 has been filed with RedHat.
  • You cannot upgrade directly to this version of Tanium Patch from Tanium Patch 3.7 or earlier. If you are upgrading from Tanium Patch 3.7 or earlier, upgrade to Tanium Patch 3.13 as an intermediate step. Contact Tanium Support or your TAM for details.

Tanium Patch 3.15.148

Release Date: 5 September 2023

Improvements

  • Patch now has a dependency on Tanium Endpoint Configuration 1.7.202.0000 or later.
  • Patch no longer has a dependency on Tanium Client Management.
  • Upgraded various third-party libraries to the most recent versions.

Resolved Issues

  • Fixed an issue that could cause End-User Self Service tools to fail during installation. End-User Self Service tools no longer use PowerShell commands, which may be blocked by antivirus software.
  • Fixed an issue that could cause the next occurrence of a maintenance window to be incorrect.
  • Fixed an issue where certain Windows patches could not be uninstalled.
  • Cached repository variables are now refreshed when custom repository variables are updated.
  • Reduced instances of Out of Memory scan errors. Scans that hit Out of Memory errors when searching for updates now separately search for superseded and non-superseded updates on retry.
  • Fixed an issue that caused an inactive deployment's endpoint counts to incorrectly drop to zero.
  • You cannot upgrade directly to this version of Tanium Patch from Tanium Patch 3.7 or earlier. If you are upgrading from Tanium Patch 3.7 or earlier, upgrade to Tanium Patch 3.13 as an intermediate step. Contact Tanium Support or your TAM for details.

Tools Versions

  • Patch: 3.15.148
  • Tanium EUSS: 1.14.18
  • TaniumFileInfo: 3.21.4
  • TaniumExecWrapper: 3.21.4
  • TaniumUpdateSearcher: 7.4.4.1059
  • 7za: 22.01
  • active-user-sessions: 1.0
  • python38: 3.1.43
  • swmgrcx: 2.7.131

Known Issues

  • The Patch service and workbench show errors immediately after a Patch installation, until service startup completes.
  • Tanium Scan For Windows still has some known synchronization issues with certain WSUS environments.
  • Tanium Patch cannot detect Cumulative Updates for Windows on Windows 11 endpoints configured with the DeferQualityUpdates policy using Group Policy, MDM, or the Windows Registry when using the Tanium Scan technique. Either use the Offline CAB scan configuration instead of Tanium Scan or do not configure this policy on Windows 11 endpoints.
  • When Tanium Patch instructs DNF to install a particular security advisory, DNF instead upgrades the latest applicable package. This affects Patch Lists and Deployments when rules or manual patches are defined. A bug has been filed with RedHat #2236266.
  • You cannot upgrade directly to this version of Tanium Patch from Tanium Patch 3.7 or earlier. If you are upgrading from Tanium Patch 3.7 or earlier, upgrade to Tanium Patch 3.13 as an intermediate step. Contact Tanium Support or your TAM for details.

Tanium Patch 3.15.135

Release Date: 22 August 2023

Resolved Issues

  • Fixed an issue where Tanium Scan for Windows database files that encountered a Tanium Server cache error would not be re-uploaded.
  • Fixed an issue with Tanium Scan for Windows where other tools changing a WSUS registry value after the pre-install or pre-uninstall scan caused post-install or post-uninstall scan failure, leading to deployment failure.
  • Fixed an issue where the endpoint count of inactive deployments would eventually drop to zero.

Tools Versions

  • Patch: 3.15.135
  • Tanium EUSS: 1.14.10
  • TaniumFileInfo: 3.21.4
  • TaniumExecWrapper: 3.21.4
  • TaniumUpdateSearcher: 7.4.4.1059
  • 7za: 22.01
  • active-user-sessions: 1.0
  • python38: 3.1.43
  • swmgrcx: 2.7.131

Known Issues

  • The Patch service and workbench show errors immediately after a Patch installation, until service startup completes.
  • Tanium Scan For Windows still has some known synchronization issues with certain WSUS environments.
  • Tanium Patch cannot detect Cumulative Updates for Windows on Windows 11 endpoints configured with the DeferQualityUpdates policy using Group Policy, MDM, or the Windows Registry when using the Tanium Scan technique. Either use the Offline CAB scan configuration instead of Tanium Scan or do not configure this policy on Windows 11 endpoints.
  • You cannot upgrade directly to this version of Tanium Patch from Tanium Patch 3.7 or earlier. If you are upgrading from Tanium Patch 3.7 or earlier, upgrade to Tanium Patch 3.13 as an intermediate step. Contact Tanium Support or your TAM for details.
  • You cannot upgrade directly to this version of Tanium Patch from Tanium Patch 3.7 or earlier. If you are upgrading from Tanium Patch 3.7 or earlier, upgrade to Tanium Patch 3.13 as an intermediate step. Contact Tanium Support or your TAM for details.

Tanium Patch 3.15.129

Release Date: 25 July 2023

Improvements

  • Tanium Patch now supports Tanium Core Platform 7.6.1.
  • Patch supports targeting by manual computer groups.
  • Patch detects and handles scenarios that cause the Tanium Scan for Windows server to crash after startup.
  • Patch content performance has been improved by optimizing existing WMI queries.
  • The Patch service recovers when a session token from System User Service cannot be obtained after startup.
  • Patch scans skip unavailable repositories on systems that use the DNF package manager.
  • The Patch process re-scans when the scan technique changes.
  • Patch detects when a previously installed patch has been rolled back and updates the deployment status to reflect a failed patch installation.
  • Patch performance has been improved on Windows endpoints through the utilization of an XML file cache.
  • Patch requires End-User Notifications 1.14.49.0000 or later.
  • The Patch workbench now displays additional deployment targeting information indicating endpoints that are no longer targeted by the deployment.
  • The Patch - Deployment Statuses sensor now returns the column Currently Targeted, which indicates if the endpoint is targeted by the deployment.
  • Added a metric to track when there are more than 1000 inactive deployments older than 30 days.

Resolved Issues

  • Fixed an issue that could cause Patch to continually attempt to install a patch that fails to install.
  • Fixed an issue that caused Patch scans on Linux endpoints to fail due to xz compressed metadata.
  • Fixed an issue that caused the Patch process to hang because of End-User Self Service application calls that did not time out.
  • Fixed an issue that could cause the Patch - Patch List Compliance sensor to report incorrect results for Ubuntu and Debian patches.
  • Fixed an issue that could cause Patch scans on endpoints that use the Zypper package manager to erroneously scan against locally enabled repositories for scans using the Tanium Scan technique.
  • Fixed an issue that could cause the Scan Configurations page to crash.
  • Fixed an issue that could cause Patch to not re-scan on Linux endpoints when using snapshots.
  • The button for saving an enforcement during editing is now Save instead of Edit.
  • Patch objects can no longer associated with invalid content set IDs.
  • Patch action group filtering is again included in Patch homepage charts.
  • Fixed incorrect links in Patch homepage charts.
  • Sorting by severity now works correctly for all cases in Patch workbench tables.
  • The Endpoint Compliance for Critical & Important Patches chart now displays data for the All Patches patch list and not every patch list.
  • Patch homepage charts no longer display data for endpoints returning 'No Value.'
  • The Patch - Patch List Compliance sensor no longer defaults to 'Compliant' for patches that do not have an available release date.
  • Fixed an issue that could cause Patch repository snapshots to be lost when upgrading from Patch versions older than 3.8 to Patch version 3.8 or later.
  • Fixed an issue that could cause install failures and leave the Patch service non-functional when upgrading from Patch versions older than 3.8 to Patch version 3.14.173 or later.
  • Fixed an issue that could cause Windows 11 22H2 endpoints to download incorrect update files leading to install failures.
  • Fixed an issue that caused the Patch process to crash when reading incorrectly formed XML data.
  • Fixed an issue that caused deployments that install by patch or patch list to fail when using Tanium managed repositories. This only impacted Linux operating systems that use the Zypper package manager.
  • Fixed an issue that could cause Patch deployments on Windows 11 22H2 endpoints to report incorrect install status after installing updates that require reboot.


Tools Versions

  • Patch: 3.15.129
  • Tanium EUSS: 1.14.10
  • TaniumFileInfo: 3.21.4
  • TaniumExecWrapper: 3.21.4
  • TaniumUpdateSearcher: 7.4.4.1059
  • 7za: 22.01
  • active-user-sessions: 1.0
  • python38: 3.1.43
  • swmgrcx: 2.7.131

Known Issues

  • Tanium Scan For Windows still has some known synchronization issues with certain WSUS environments.
  • Tanium Patch cannot detect Cumulative Updates for Windows on Windows 11 endpoints configured with the DeferQualityUpdates policy using Group Policy, MDM, or the Windows Registry when using the Tanium Scan technique. Either use the Offline CAB scan configuration instead of Tanium Scan or do not configure this policy on Windows 11 endpoints.
  • You cannot upgrade directly to this version of Tanium Patch from Tanium Patch 3.7 or earlier. If you are upgrading from Tanium Patch 3.7 or earlier, upgrade to Tanium Patch 3.13 as an intermediate step. Contact Tanium Support or your TAM for details.