Release notes for update package 1897-5242

This update package improves the detection capabilities of the Forcepoint NGFW system.

RELEASE DATE:    Thursday July 03, 2025
MD5 CHECKSUM:    f84492f1c76447384b0417d324f07198
SHA1 CHECKSUM:    b08835ff69fa272d909d876afff03bfabd752500
SHA256 CHECKSUM:    13969c43921fc047ce62c7c42ed4557cbdbd10989b018e76bbd305a37b143b55


UPDATE CRITICALITY:    HIGH

MINIMUM SOFTWARE VERSIONS
- Forcepoint NGFW Security Management Center:    6.10.1.11125
- Forcepoint NGFW:    6.8.1.24103

List of detected attacks in this update package:

Risk levelDescriptionReferenceVulnerability
High     An attempt to exploit a vulnerability in Apache Parquet detected     CVE-2025-30065     Apache-Parquet-Arbitrary-Class-Instantiation-CVE-2025-30065

Jump to: Detected Attacks Other Changes

DETECTED ATTACKS

New detected attacks:

Other Binary File Stream

RiskVulnerability/SituationReferencesRelated FingerprintSituation Type
High Apache-Parquet-Arbitrary-Class-Instantiation-CVE-2025-30065 CVE-2025-30065 File-Binary_Apache-Parquet-Arbitrary-Class-Instantiation-CVE-2025-30065 Suspected Compromise

Updated detected attacks:

HTTP Request Header Line

RiskVulnerability/SituationReferencesRelated FingerprintSituation TypeChange Description
High NetGear-ProSafe-Arbitrary-File-Upload-Vulnerability-CVE-2016-1524 CVE-2016-1524 HTTP_CSH-NetGear-ProSafe-Arbitrary-File-Upload-Vulnerability-CVE-2016-1524 Suspected Compromise
Name: HTTP_CSH-ProSafe-Management-System-Arbitrary-File-Upload-Vulnerability->HTTP_CSH-NetGear-ProSafe-Arbitrary-File-Upload-Vulnerability-CVE-2016-1524
Description has changed

HTTP Normalized Request-Line

RiskVulnerability/SituationReferencesRelated FingerprintSituation TypeChange Description
High Xwiki-Query-REST-API-SQL-Injection-CVE-2025-32969 CVE-2025-32969 HTTP_CRL-Xwiki-Query-REST-API-SQL-Injection-CVE-2025-32969 Suspected Compromise
Comment has changed
Fingerprint regexp changed

LIST OF OTHER CHANGES:

New objects:

TypeName
CategoryApache Parquet

Updated objects:

TypeNameChanges
IPListRwanda
IPListSomalia
IPListIraq
IPListSaudi Arabia
IPListIran
IPListCyprus
IPListTanzania
IPListArmenia
IPListKenya
IPListUganda
IPListSeychelles
IPListJordan
IPListLebanon
IPListOman
IPListQatar
IPListUnited Arab Emirates
IPListIsrael
IPListTürkiye
IPListEthiopia
IPListGreece
IPListEstonia
IPListLatvia
IPListLithuania
IPListSvalbard and Jan Mayen
IPListGeorgia
IPListMoldova
IPListBelarus
IPListFinland
IPListUkraine
IPListHungary
IPListBulgaria
IPListAlbania
IPListPoland
IPListRomania
IPListComoros
IPListMalawi
IPListMauritius
IPListSouth Africa
IPListAfghanistan
IPListPakistan
IPListBangladesh
IPListSri Lanka
IPListBhutan
IPListIndia
IPListNepal
IPListMyanmar
IPListUzbekistan
IPListKazakhstan
IPListKyrgyzstan
IPListCocos (Keeling) Islands
IPListPalau
IPListVietnam
IPListThailand
IPListIndonesia
IPListTaiwan
IPListPhilippines
IPListMalaysia
IPListChina
IPListHong Kong
IPListBrunei
IPListMacao
IPListCambodia
IPListSouth Korea
IPListJapan
IPListNorth Korea
IPListSingapore
IPListTimor-Leste
IPListRussia
IPListMongolia
IPListAustralia
IPListChristmas Island
IPListMarshall Islands
IPListFederated States of Micronesia
IPListPapua New Guinea
IPListSolomon Islands
IPListTuvalu
IPListNauru
IPListVanuatu
IPListNorfolk Island
IPListNew Zealand
IPListFiji
IPListCameroon
IPListSenegal
IPListPortugal
IPListIvory Coast
IPListGhana
IPListNigeria
IPListGabon
IPListSpain
IPListMalta
IPListDenmark
IPListIceland
IPListUnited Kingdom
IPListSwitzerland
IPListSweden
IPListThe Netherlands
IPListAustria
IPListBelgium
IPListGermany
IPListLuxembourg
IPListIreland
IPListFrance
IPListAndorra
IPListSlovakia
IPListCzechia
IPListNorway
IPListVatican City
IPListItaly
IPListSlovenia
IPListCroatia
IPListBosnia and Herzegovina
IPListSaint Helena
IPListBarbados
IPListGuyana
IPListSaint Pierre and Miquelon
IPListGreenland
IPListParaguay
IPListUruguay
IPListBrazil
IPListJamaica
IPListDominican Republic
IPListCuba
IPListMartinique
IPListBahamas
IPListBermuda
IPListAnguilla
IPListTrinidad and Tobago
IPListSt Kitts and Nevis
IPListDominica
IPListAntigua and Barbuda
IPListSaint Lucia
IPListTurks and Caicos Islands
IPListAruba
IPListBritish Virgin Islands
IPListSt Vincent and Grenadines
IPListSaint Martin
IPListSaint Barthélemy
IPListGrenada
IPListCayman Islands
IPListBelize
IPListGuatemala
IPListHonduras
IPListCosta Rica
IPListVenezuela
IPListEcuador
IPListColombia
IPListPanama
IPListHaiti
IPListArgentina
IPListChile
IPListBolivia
IPListPeru
IPListMexico
IPListKiribati
IPListTokelau
IPListTonga
IPListWallis and Futuna
IPListSamoa
IPListPuerto Rico
IPListU.S. Virgin Islands
IPListU.S. Outlying Islands
IPListAmerican Samoa
IPListCanada
IPListUnited States
IPListPalestine
IPListSerbia
IPListAntarctica
IPListSint Maarten
IPListCuraçao
IPListBonaire, Sint Eustatius, and Saba
IPListTOR exit nodes IP Address List
IPListAmazon AMAZON
IPListAmazon EC2
IPListGoogle Servers
IPListTOR relay nodes IP Address List
IPListBotnet IP Address List
IPListMalicious Site IP Address List
IPListNordVPN Servers IP Address List
IPListAmazon AMAZON us-east-1
IPListAmazon EC2 us-east-1
IPListAmazon AMAZON us-east-2
IPListAmazon EC2 us-east-2
IPListForcepoint Drop IP Address List
IPListAmazon AMAZON us-west-2
IPListAmazon EC2 us-west-2
IPListWeChat IP Address List
IPListAmazon AURORA_DSQL
SituationHTTP_PSU-Shared-Variables
Fingerprint regexp changed
SituationFile-Binary_Shared-Variables
ApplicationTOR
ApplicationNordVPN

HOW TO IMPORT AND ACTIVATE THE DYNAMIC UPDATE PACKAGE

  1. Download the dynamic update package, then make sure that the checksums for the original files and the files that you have downloaded match.
  2. In the Management Client, select Menu > File > Import > Import Update Packages.
  3. Browse to the file, select it, then click Import.
  4. Select  Configuration, then browse to Administration > Other Elements > Updates.
  5. Right-click the imported dynamic update package, then select Activate.
  6. When the activation is finished, refresh the policy on all NGFW Engines. If your policy uses a custom template, you might need to edit the policy.

DISCLAIMER AND COPYRIGHT

Copyright © 2025 Forcepoint
Forcepoint and the FORCEPOINT logo are trademarks of Forcepoint.

All other trademarks used in this document are the property of their respective owners.

Every effort has been made to ensure the accuracy of this document. However, Forcepoint makes no warranties with respect to this documentation and disclaims any implied warranties of merchantability and fitness for a particular purpose. Forcepoint shall not be liable for any error or for incidental or consequential damages in connection with the furnishing, performance, or use of this manual or the examples herein. The information in this documentation is subject to change without notice.