Lucene search

K
mskbMicrosoftKB5005368
HistoryAug 10, 2021 - 7:00 a.m.

Cumulative Update 56 for Microsoft Dynamics NAV 2017 (Build 30601)

2021-08-1007:00:00
Microsoft
support.microsoft.com
65
microsoft dynamics nav 2017
cumulative update 56
hotfixes
regulatory features
xss vulnerability
regulatory updates
compatibility issues
interoperability issues
security fix

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

CVSS3

5.4

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

AI Score

6.1

Confidence

High

EPSS

0.001

Percentile

20.3%

Cumulative Update 56 for Microsoft Dynamics NAV 2017 (Build 30601)

Overview

This cumulative update includes all hotfixes and regulatory features that have been released for Microsoft Dynamics NAV 2017, including hotfixes and regulatory features that were released in previous cumulative updates. This update also fixes an XSS vulnerability. For more information, see CVE-2021-36946.This cumulative update replaces previously released cumulative updates. You should always install the latest cumulative update.It may be necessary to update your license after you implement this hotfix to gain access to new objects that are included in this or a previous cumulative update. (This applies only to customer licenses).

For a list of cumulative updates that have been released for Microsoft Dynamics NAV 2017, see released cumulative updates for Microsoft Dynamics NAV 2017. Cumulative updates are intended for new and existing customers who are running Microsoft Dynamics NAV 2017.

Important

We recommend that you contact your Microsoft Dynamics Partner before you install hotfixes or updates. It is important to verify that your environment is compatible with the hotfixes or updates being installed. A hotfix or update may cause interoperability issues with customizations and third-party products that work with your Microsoft Dynamics NAV solution.Problems that are resolved in this cumulative updateThe following problems are resolved in this cumulative update.Platform hotfixesID Title
395473 PrincipalOperationException error message when trying to retrieve the authorization groups.
400959 An apparent memory leak occurs in Dynamics NAV Service when processing a large number of records in parallel using the StartSession function.
Application hotfixesID Title
406001 “There is no Cust. Ledger Entry within the filter.” error message when running a VAT- VIES Declaration Disk after applying entries with the Adjust VAT for Payment Discount feature enabled.
401910 The total amount of the reminder is not correct when one of the invoices is overdue for the number of days less than grace period in first level.
402918 The actual cost can’t be fully posted to the total WIP cost amount after using the calculate WIP function.
399430 “The Detailed Vendor Ledg. Entry already exists. Identification fields and values: Entry No.=‘XXXX’”, error message when trying to un-apply entries.
Local application hotfixes****BE - BelgiumID Title
405674 Multiple applications for CODA in the Belgian version.
CH - SwitzerlandID Title
404747 “You cannot change the VAT product posting group” error message when trying to change the Shipment Date in a sales order with prepayments in the Swiss version.
IT - ItalyID Title
402963 The CodiceFornitura element doesn’t export the correct value in XML file for the Periodic VAT payment Communication in the Italian version.
Regulatory featuresLocal regulatory featuresIT - ItalyID Title
404978 The Tax Authority Doc. No. field should be enlarged in the Italian version.
UK - United KingdomID Title
404258 The fraud prevention headers can be specified automatically without interaction with user in the British version.

Resolution

How to obtain the Microsoft Dynamics NAV update filesThis update is available for manual download and installation from the Microsoft Download Center.Cumulative update CU 56 for Microsoft Dynamics NAV 2017Which hotfix package to downloadThis cumulative update has multiple hotfix packages. Select and download one of the following packages depending on the country version of your Microsoft Dynamics NAV 2017 database.Country Hotfix package
AT - Austria Download the CU 56 NAV 2017 AT package
AU - Australia Download the CU 56 NAV 2017 AU package
BE - Belgium Download the CU 56 NAV 2017 BE package
CH - Switzerland Download the CU 56 NAV 2017 CH package
CZ- Czech Download the CU 56 NAV 2017 CZ package
DE - Germany Download the CU 56 NAV 2017 DE package
DK - Denmark Download the CU 56 NAV 2017 DK package
ES - Spain Download the CU 56 NAV 2017 ES package
FI - Finland Download the CU 56 NAV 2017 FI package
FR - France Download the CU 56 NAV 2017 FR package
IS - Iceland Download the CU 56 NAV 2017 IS package
IT - Italy Download the CU 56 NAV 2017 IT package
NA - North America Download the CU 56 NAV 2017 NA package
NL - Netherlands Download the CU 56 NAV 2017 NL package
NO - Norway Download the CU 56 NAV 2017 NO package
NZ - New Zealand Download the CU 56 NAV 2017 NZ package
RU - Russia Download the CU 56 NAV 2017 RU package
SE - Sweden Download the CU 56 NAV 2017 SE package
UK - United Kingdom Download the CU 56 NAV 2017 UK package
All other countries Download the CU 56 NAV 2017 W1 package
How to install a Microsoft Dynamics NAV 2017 cumulative updateSee How to install a Microsoft Dynamics NAV 2017 cumulative update.PrerequisitesYou must have Microsoft Dynamics NAV 2017 installed to apply this hotfix.

More information

See more information about software update terminology and Microsoft Dynamics NAV 2017.

Status

Microsoft has confirmed that this is a problem in the Microsoft products that are listed in the “Applies to” section.

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

CVSS3

5.4

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

AI Score

6.1

Confidence

High

EPSS

0.001

Percentile

20.3%