Prior to this Werk the symmetric encryption of agent data (if configured) would fail silently if the option "Run agent as non-root user (Linux)" was also set, since these two options are not compatible.
As a result, agent output would be sent unencrypted.
If symmetric encryption is configured, but failing, the agent will now abort immediately and transmit a message about the failure as the only output.
This will then be reported at the Check_MK Agent service of the host, alongside a CRIT status.
* 2.2.0 (beta)
* 1.6.0 (EOL)
We have rated the issue with a CVSS Score of 3.7 (Low) with the following CVSS vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N.
We have assigned CVE CVE-2023-1768.
To the list of all Werks