Lucent Sky AVM version 1807 release information

2018/12/27 |

This article includes a list the new features and bug fixes that are included in Lucent Sky AVM version 1807, as well as known issues of this release.

For more information about this release, visit the blog post Lucent Sky AVM version 1807 released.

Updates in Lucent Sky AVM version 1807

  • Java build with Ant 1.10 - This is the first part of our effort to improve compatibility with Java applications built with Ant. Starting with v1807, Ant 1.10 is available as a Java build option, along with Ant 1.9 and Maven. We will continue expand the capabilities and compatibility of the Ant 1.10 integration over the next two releases, when it is expected to replace Ant 1.9 as the default Java build option in Lucent Sky AVM. To scan a Java application using Ant 1.10, include "JavaBuild,Ant" in the scan arguments.

  • API improvements - The CLEAR Engine API received significant improvements on performance and expandability. The most visible improvement for end-users are that the web UI is much more responsive. For users who are interfacing directly with the API, the changes in API are backward-compatible, but we encourage you to take advantage of the additional expandability options. For help on using these new options, contact our support team.

  • Analysis improvements - The analysis engines received several updates to improve the analysis accuracy and ability to recognize custom security libraries.

  • Remediation improvements - The remediation engine received updates to improve the remediation confidence on certain vulnerabilities in .NET and PHP applications.

  • Bug fixes - Several UI bug fixes and other cosmetic improvements were included in version 1807.

List of fixes included in Lucent Sky AVM version 1807

Security libraries defined in a custom rule package were not recognized by the analysis engines

Security libraries defined in a custom rule package were not recognized by the analysis engines. Security libraries defined for the remediation engine were not affected.

This issue has been addressed in Lucent Sky AVM version 1807.

Known issues of Lucent Sky AVM version 1807

The error "valid IL was not found" (-62300001) occurs when analyzing a .NET desktop application

When analyzing a .NET application based on Windows Forms or WPF, the scan failed with the error "valid IL was not found" (-62300001). This is caused by a bug resulting MSBuild fails to properly build the application.

This issue has been addressed in Lucent Sky AVM version 1809.