Processed recent additions
This commit is contained in:
@@ -0,0 +1,13 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 10.2.10-h37
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address [CVE-2026-0273](https://security-stg.paloaltonetworks.com/CVE-2026-0273) and [CVE-2026-0272](https://security-stg.paloaltonetworks.com/CVE-2026-0272).
|
||||||
|
|
||||||
|
## PAN-325786
|
||||||
|
|
||||||
|
Fixed an issue where content updates with active traffic failed.
|
||||||
@@ -0,0 +1,40 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 10.2.10-h39
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
|
|
||||||
|
## PAN-314630
|
||||||
|
|
||||||
|
Fixed an issue where the firewall repeatedly rebooted and entered maintenance mode, and a factory reset was required.
|
||||||
|
|
||||||
|
## PAN-300055
|
||||||
|
|
||||||
|
Fixed an issue where the firewall experienced high disk utilization in the /opt/pancfg/mgmt/content-preview directory due to older content data not being automatically removed when an error occurred during the process.
|
||||||
|
|
||||||
|
## PAN-298788
|
||||||
|
|
||||||
|
Fixed an issue where the /pancfg partition on the Azure Cloud NGFW reached 100% utilization, which caused commit failures.
|
||||||
|
|
||||||
|
## PAN-284073
|
||||||
|
|
||||||
|
Fixed an issue on the firewall that caused commits to fail and the web interface to become inaccessible.
|
||||||
|
|
||||||
|
## PAN-278611
|
||||||
|
|
||||||
|
Fixed an issue on Panorama where software images were not purged from the /opt/pancfg/mgmt/sw-images folder.
|
||||||
@@ -0,0 +1,9 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 10.2.13-h22
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address [CVE-2026-0273](https://security-stg.paloaltonetworks.com/CVE-2026-0273) and [CVE-2026-0272](https://security-stg.paloaltonetworks.com/CVE-2026-0272).
|
||||||
@@ -0,0 +1,20 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 10.2.13-h23
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
@@ -0,0 +1,9 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 10.2.16-h8
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address [CVE-2026-0273](https://security-stg.paloaltonetworks.com/CVE-2026-0273) and [CVE-2026-0272](https://security-stg.paloaltonetworks.com/CVE-2026-0272).
|
||||||
@@ -0,0 +1,20 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 10.2.16-h9
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
@@ -0,0 +1,9 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 10.2.18-h7
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address [CVE-2026-0273](https://security-stg.paloaltonetworks.com/CVE-2026-0273) and [CVE-2026-0272](https://security-stg.paloaltonetworks.com/CVE-2026-0272).
|
||||||
@@ -0,0 +1,32 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 10.2.18-h8
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
|
|
||||||
|
## PAN-317466
|
||||||
|
|
||||||
|
Fixed an issue where SIP sessions stopped progressing after the firewall received fragmented packets, fragmented at header field.
|
||||||
|
|
||||||
|
## PAN-306555
|
||||||
|
|
||||||
|
Fixed an issue where the firewall stopped responding, which led to service outages.
|
||||||
|
|
||||||
|
## PAN-295803
|
||||||
|
|
||||||
|
Addressed a memory leak issue under sc3 and automatic commit recovery (ACR) code path.
|
||||||
@@ -0,0 +1,13 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 10.2.7-h35
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address [CVE-2026-0273](https://security-stg.paloaltonetworks.com/CVE-2026-0273) and [CVE-2026-0272](https://security-stg.paloaltonetworks.com/CVE-2026-0272).
|
||||||
|
|
||||||
|
## PAN-293673
|
||||||
|
|
||||||
|
Fixed an issue where the firewall stopped all tasks due to an OOM condition caused by a scheduled log export using FTP to an external FTP server.
|
||||||
@@ -0,0 +1,20 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 10.2.7-h36
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
@@ -0,0 +1,56 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.1.10-h30
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
|
|
||||||
|
## PAN-326354
|
||||||
|
|
||||||
|
Fixed an issue where the sslmgr process stopped responding when attempting to display the OSCP host cache.
|
||||||
|
|
||||||
|
## PAN-324370
|
||||||
|
|
||||||
|
Fixed an issue where IDE traffic did not function as expected when both HTTP head insertion and DLP inspection were enabled.
|
||||||
|
|
||||||
|
## PAN-322281
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in HA configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where the HA 2 interface did not come up on the passive firewall, which resulted in the firewall being unable to join the HA pair.
|
||||||
|
|
||||||
|
## PAN-321816
|
||||||
|
|
||||||
|
Fixed an issue where processes stopped responding unexpectedly.
|
||||||
|
|
||||||
|
## PAN-319504
|
||||||
|
|
||||||
|
Fixed an issue where telemetry data was not sent to the cloud due to the firewall being unable to resolve the destination server's FQDN even when a proxy server was configured. With this fix, the firewall properly sends telemetry data through the configured proxy server without requiring direct public DNS resolution for the telemetry server's FQDN.
|
||||||
|
|
||||||
|
## PAN-304360
|
||||||
|
|
||||||
|
Fixed an issue where the firewall did not redistribute its application routes to BGP peers. This occurred in multi-mesh deployments with the multi-cloud networking feature enabled.
|
||||||
|
|
||||||
|
## PAN-286386
|
||||||
|
|
||||||
|
Fixed an issue where GlobalProtect users were unable to connect.
|
||||||
|
|
||||||
|
## PAN-285327
|
||||||
|
|
||||||
|
Fixed an issue where a memory leak occurred when processing device and vsys tags.
|
||||||
@@ -0,0 +1,72 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.1.13-h9
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
|
|
||||||
|
## PAN-326677
|
||||||
|
|
||||||
|
Fixed an issue where a selective push from Panorama to the firewall was successful even when applying rename operation failed in selective push, which resulted in configurations on the firewall being deleted. With this fix, the selective push will fail when applying rename operation fails.
|
||||||
|
|
||||||
|
## PAN-326354
|
||||||
|
|
||||||
|
Fixed an issue where the sslmgr process stopped responding when attempting to display the OSCP host cache.
|
||||||
|
|
||||||
|
## PAN-324370
|
||||||
|
|
||||||
|
Fixed an issue where IDE traffic did not function as expected when both HTTP head insertion and DLP inspection were enabled.
|
||||||
|
|
||||||
|
## PAN-321816
|
||||||
|
|
||||||
|
Fixed an issue where processes stopped responding unexpectedly.
|
||||||
|
|
||||||
|
## PAN-321699
|
||||||
|
|
||||||
|
Fixed an issue where device telemetry intermittently failed to send files, which resulted in critical alerts in system files.
|
||||||
|
|
||||||
|
## PAN-319504
|
||||||
|
|
||||||
|
Fixed an issue where telemetry data was not sent to the cloud due to the firewall being unable to resolve the destination server's FQDN even when a proxy server was configured. With this fix, the firewall properly sends telemetry data through the configured proxy server without requiring direct public DNS resolution for the telemetry server's FQDN.
|
||||||
|
|
||||||
|
## PAN-318106
|
||||||
|
|
||||||
|
Fixed an issue where SCM did not update device telemetry for the firewall after upgrading to an affected release.
|
||||||
|
|
||||||
|
## PAN-312442
|
||||||
|
|
||||||
|
Fixed an issue where 403 errors occurred when performing "show config effective-running" API query after downgrading to an affected PAN-OS release.
|
||||||
|
|
||||||
|
## PAN-308876
|
||||||
|
|
||||||
|
Fixed an issue where upgrades to managed firewalls from Panorama failed.
|
||||||
|
|
||||||
|
## PAN-304360
|
||||||
|
|
||||||
|
Fixed an issue where the firewall did not redistribute its application routes to BGP peers. This occurred in multi-mesh deployments with the multi-cloud networking feature enabled.
|
||||||
|
|
||||||
|
## PAN-297370
|
||||||
|
|
||||||
|
Fixed an issue where pushing a new object from Panorama to a Cloud NGFW Device Group unexpectedly removed existing Panorama-pushed policy rules, even though the **Push Preview** did not show any deletions, which led to traffic disruptions.
|
||||||
|
|
||||||
|
## PAN-286386
|
||||||
|
|
||||||
|
Fixed an issue where GlobalProtect users were unable to connect
|
||||||
|
|
||||||
|
## PAN-285327
|
||||||
|
|
||||||
|
Fixed an issue where a memory leak occurred when processing device and vsys tags.
|
||||||
@@ -0,0 +1,321 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.1.16
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
|
|
||||||
|
## PAN-327009
|
||||||
|
|
||||||
|
Fixed an issue where the all_task process stopped responding.
|
||||||
|
|
||||||
|
## PAN-326677
|
||||||
|
|
||||||
|
Fixed an issue where a selective push from Panorama to the firewall was successful even when applying rename operation failed in selective push, which resulted in configurations on the firewall being deleted. With this fix, the selective push will fail when applying rename operation fails.
|
||||||
|
|
||||||
|
## PAN-326354
|
||||||
|
|
||||||
|
Fixed an issue where the sslmgr process stopped responding when attempting to display the OSCP host cache.
|
||||||
|
|
||||||
|
## PAN-324370
|
||||||
|
|
||||||
|
Fixed an issue where IDE traffic did not function as expected when both HTTP head insertion and DLP inspection were enabled.
|
||||||
|
|
||||||
|
## PAN-323485
|
||||||
|
|
||||||
|
Fixed an issue where multicast radio RTP based traffic was dropped after an upgrade when the firewall performed Cloud Inline inspection, which led to an exceeded session queue for Cloud Threat Detection.
|
||||||
|
|
||||||
|
## PAN-321816
|
||||||
|
|
||||||
|
Fixed an issue where processes stopped responding unexpectedly.
|
||||||
|
|
||||||
|
## PAN-321699
|
||||||
|
|
||||||
|
Fixed an issue where device telemetry intermittently failed to send files, which resulted in critical alerts in system files.
|
||||||
|
|
||||||
|
## PAN-321527
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
PA-7500 firewalls in HA cluster configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where, when one firewall suspended operations, the other firewall also suspended operations instead of initiating a failover, which resulted in a complete traffic outage.
|
||||||
|
|
||||||
|
## PAN-321516
|
||||||
|
|
||||||
|
Fixed an issue where the dataplane restarted due to a race condition in the dataplane cache infrastructure.
|
||||||
|
|
||||||
|
## PAN-321340
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in FIPS mode only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where GlobalProtect unexpectedly prompted for RADIUS authentication instead of client certificate authentication due to an OSCP validation error and subsequent CRL verification failure, which led to certificates being marked as invalid.
|
||||||
|
|
||||||
|
## PAN-321060
|
||||||
|
|
||||||
|
Fixed an issue where an ethernet interface remained in a down state after repeated automated enable/disable cycles and required manual intervention, which resulted in backup outages.
|
||||||
|
|
||||||
|
## PAN-320598
|
||||||
|
|
||||||
|
Fixed an issue where internal and external DNS names did not resolve when connected to a GlobalProtect gateway.
|
||||||
|
|
||||||
|
## PAN-320245
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
PA-7500 Series firewalls in vwire mode only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where Oracle application traffic was intermittently not processed even though connected devices sent the traffic, which led to service distruptions.
|
||||||
|
|
||||||
|
## PAN-319793
|
||||||
|
|
||||||
|
Fixed an issue where, after upgrading to PAN-OS 12.1.5, GlobalProtect Clientless VPN failed to access JavaScripts.
|
||||||
|
|
||||||
|
## PAN-319504
|
||||||
|
|
||||||
|
Fixed an issue where telemetry data was not sent to the cloud due to the firewall being unable to resolve the destination server's FQDN even when a proxy server was configured. With this fix, the firewall properly sends telemetry data through the configured proxy server without requiring direct public DNS resolution for the telemetry server's FQDN.
|
||||||
|
|
||||||
|
## PAN-319419
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in active/passive HA configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where active firewalls were unable to send device telemetry data to CDL.
|
||||||
|
|
||||||
|
## PAN-319352
|
||||||
|
|
||||||
|
Fixed an issue where the firewall rebooted unexpectedly without any configuration or power changes.
|
||||||
|
|
||||||
|
## PAN-319343
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Prisma Access Gateways only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where the global management plane stopped responding, which caused SSH and HTML disconnections, HIP database lookup failures, and significantly slower SCM commits. This occurred when egress IP allow listing was enabled in SCM and changes were made to EDLs.
|
||||||
|
|
||||||
|
## PAN-319288
|
||||||
|
|
||||||
|
Fixed an issue where a DPC in Slot 4 restarted repeatedly, which caused internal path monitoring failures and a failover event.
|
||||||
|
|
||||||
|
## PAN-319228
|
||||||
|
|
||||||
|
Fixed an issue where External Dynamic List (EDL) refresh and commit operations remained in a pending state, which prevented any subsequent operations from completing.
|
||||||
|
|
||||||
|
## PAN-318580
|
||||||
|
|
||||||
|
Fixed an issue where processes restarted and the firewall unexpectedly rebooted when you configured a Security policy rule with **Source Device > quarantine**.
|
||||||
|
|
||||||
|
## PAN-318382
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in HA configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where the secondary firewall remained at an **Initial** state after an upgrade.
|
||||||
|
|
||||||
|
## PAN-318120
|
||||||
|
|
||||||
|
Fixed an issue where SSL traffic was silently dropped when traffic was processed by a Security policy with an Anti-Spyware profile that had Inline cloud Analysis enabled for SSL C2 Detector with an action other than allow or alert.
|
||||||
|
|
||||||
|
## PAN-318106
|
||||||
|
|
||||||
|
Fixed an issue where SCM did not update device telemetry for the firewall after upgrading to an affected release.
|
||||||
|
|
||||||
|
## PAN-317755
|
||||||
|
|
||||||
|
Fixed an issue on Panorama where selective push operations failed when plugin configurations included access-domain or log-collector references.
|
||||||
|
|
||||||
|
## PAN-317648
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
PA-5450 firewalls and PA-7000 Series firewalls with 100G NPCs only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where intermittent packet loss occurred when traversing the dataplane after upgrading the firewall. This occurred when a dataplane HA interface was configured in an environment where Slot 1 was unpopulated , which resulted in a wildcard entry being created within the QMAP table.
|
||||||
|
|
||||||
|
## PAN-317614
|
||||||
|
|
||||||
|
Fixed an issue where high throughput and increased packet rates caused high dataplane CPU usage.
|
||||||
|
|
||||||
|
## PAN-316435
|
||||||
|
|
||||||
|
Fixed an issue where the firewall restarted unexpectedly due to an OOM condition after upgrading to an affected release.
|
||||||
|
|
||||||
|
## PAN-316120
|
||||||
|
|
||||||
|
Fixed an issue where, after Advanced Routing was enabled, the firewall advertised routes to internal BGP neighbors with the original external BGP next-hop address.
|
||||||
|
|
||||||
|
## PAN-315337
|
||||||
|
|
||||||
|
Fixed an issue where GlobalProtect throughput was reduced after an upgrade.
|
||||||
|
|
||||||
|
## PAN-315326
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
PA-7500 firewalls only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where zone protection threshold values per dataplane were unexpectedly low.
|
||||||
|
|
||||||
|
## PAN-315314
|
||||||
|
|
||||||
|
Fixed an issue where, when a push operation from Panorama to the firewall failed, accounting logs stopped forwarding.
|
||||||
|
|
||||||
|
## PAN-315160
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
PA-7500 firewalls only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where internal path monitoring logs incorrectly reported internal path monitoring failures when they did not occur.
|
||||||
|
|
||||||
|
## PAN-314776
|
||||||
|
|
||||||
|
Fixed an issue where the configd process stopped responding after pushing configuration changes from Panorama to the firewall.
|
||||||
|
|
||||||
|
## PAN-314623
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in active/passive HA configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where, after a failover, routing information within OSPF protocol was not correctly translated or propagated, which affected network path convergence and FRR capabilities.
|
||||||
|
|
||||||
|
## PAN-314512
|
||||||
|
|
||||||
|
Fixed an issue where the GlobalProtect portal became inaccessible when the dataplane was configured with a DHCP assigned IP address.
|
||||||
|
|
||||||
|
## PAN-314104
|
||||||
|
|
||||||
|
Fixed an issue where running BCM counter commands from the administrative shell did not consistently return output, and commands to modify queue sizes did not take effect.
|
||||||
|
|
||||||
|
## PAN-313787
|
||||||
|
|
||||||
|
Fixed an issue where some system log filters with the eventid operator for a BGP event did not work.
|
||||||
|
|
||||||
|
## PAN-313606
|
||||||
|
|
||||||
|
Fixed an issue where Panorama pushed commits took longer than expected to complete without displaying an error message when committing due to slow cloud-app compilation.
|
||||||
|
|
||||||
|
## PAN-313575
|
||||||
|
|
||||||
|
Fixed an issue where 10G connections on built-in RJ45 interfaces (ethernet1/1 through ethernet1/5) intermittently experienced interface flapping when connected to Cisco switchports.
|
||||||
|
|
||||||
|
## PAN-313523
|
||||||
|
|
||||||
|
Fixed an issue where generating a tech support file caused GlobalProtect users to be forcibly logged out.
|
||||||
|
|
||||||
|
## PAN-313443
|
||||||
|
|
||||||
|
Fixed an issue where firewalls acting as an accumulation proxy sent a server hello with an earlier TCP timestamp value than a preceding ACK packet, which prevented successful session establishment. This occurred when the client hello messages were split across multiple network segments.
|
||||||
|
|
||||||
|
To use this fix, run the CLI command debug dataplane set ssl-decrypt accumulate-client-hello ts-relay yes.
|
||||||
|
|
||||||
|
## PAN-313218
|
||||||
|
|
||||||
|
Added the following CLI commands to address QoS packet drops due to bursty traffic:
|
||||||
|
|
||||||
|
- debug dataplane set qos-setting qos-param qlimit 300
|
||||||
|
- debug dataplane set qos-setting qos-param red low 50 high 90
|
||||||
|
|
||||||
|
To utilize this fix, change the parameters, disable QoS, commit changes, enable QOS, and then re-commit changes.
|
||||||
|
|
||||||
|
## PAN-313036
|
||||||
|
|
||||||
|
Fixed an issue where the firewall dataplane continuously accumulated packets in the ctd_pkt_queue and packet buffers, which caused resource exhaustion and prematurely terminated sessions.
|
||||||
|
|
||||||
|
## PAN-312442
|
||||||
|
|
||||||
|
Fixed an issue where 403 errors occurred when performing "show config effective-running" API query after downgrading to an affected PAN-OS release.
|
||||||
|
|
||||||
|
## PAN-312330
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in active/passive HA configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where the Clientless VPN applications failed to load due to the firewall dataplane incorrectly processing session information.
|
||||||
|
|
||||||
|
## PAN-312157
|
||||||
|
|
||||||
|
Fixed an issue where, during a commit, the firewall intermittently stopped sending SNMP messages, which caused interface counters to stop updating for brief periods of time.
|
||||||
|
|
||||||
|
## PAN-311658
|
||||||
|
|
||||||
|
Fixed an issue where the reportd process stopped responding, which caused the firewall to reboot.
|
||||||
|
|
||||||
|
## PAN-311419
|
||||||
|
|
||||||
|
Fixed an issue where the recommended filter for identifying traffic from unidentified users in traffic logs reported an incorrectly low number of results.
|
||||||
|
|
||||||
|
## PAN-310240
|
||||||
|
|
||||||
|
Fixed an issue where software packet buffers were completely utilized when performing a Data Loss Prevention longevity test.
|
||||||
|
|
||||||
|
## PAN-308876
|
||||||
|
|
||||||
|
Fixed an issue where upgrades to managed firewalls from Panorama failed.
|
||||||
|
|
||||||
|
## PAN-308775
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in active/passive configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where NTP status intermittently showed as rejected on the active firewall, which prevented the firewalls from synchronizing time.
|
||||||
|
|
||||||
|
## PAN-308444
|
||||||
|
|
||||||
|
Fixed an issue where pushing multiple policy rules failed when the policy rules contained a large number of dynamic address object groups or user groups.
|
||||||
|
|
||||||
|
## PAN-307190
|
||||||
|
|
||||||
|
Fixed an issue where LED indicators on combo ports remained off even when the network link was active.
|
||||||
|
|
||||||
|
## PAN-304360
|
||||||
|
|
||||||
|
Fixed an issue where the firewall did not redistribute its application routes to BGP peers. This occurred in multi-mesh deployments with the multi-cloud networking feature enabled.
|
||||||
|
|
||||||
|
## PAN-295082
|
||||||
|
|
||||||
|
Fixed an issue on the Panorama web interface where you were unable to delete or change a logical router for tunnel, SD-WAN, VLAN, or loopback interfaces under a template.
|
||||||
|
|
||||||
|
## PAN-289460
|
||||||
|
|
||||||
|
Fixed an issue where the timestamp value in SNMPv3 trap headers was incorrect.
|
||||||
|
|
||||||
|
To use this fix, run the CLI command debug log-receiver enginetime-from-snmptime yes.
|
||||||
|
|
||||||
|
## PAN-286386
|
||||||
|
|
||||||
|
Fixed an issue where GlobalProtect users were unable to connect
|
||||||
|
|
||||||
|
## PAN-285327
|
||||||
|
|
||||||
|
Fixed an issue where a memory leak occurred when processing device and vsys tags.
|
||||||
|
|
||||||
|
## PAN-267067
|
||||||
|
|
||||||
|
Fixed an issue where VXLAN traffic failed and packet loss occurred in networks sensors after upgrading to an affected release.
|
||||||
|
|
||||||
|
## PAN-240066
|
||||||
|
|
||||||
|
Fixed a duplicate MAC address issue where an ethernet interface sent out Gratuitous ARP (GARP) messages for an IP address that was not configured on it.
|
||||||
@@ -0,0 +1,9 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.1.4-h34
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address [CVE-2026-0273](https://security-stg.paloaltonetworks.com/CVE-2026-0273) and [CVE-2026-0272](https://security-stg.paloaltonetworks.com/CVE-2026-0272).
|
||||||
@@ -0,0 +1,20 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.1.4-h35
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
@@ -0,0 +1,41 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.1.6-h35
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
|
|
||||||
|
## PAN-319504
|
||||||
|
|
||||||
|
Fixed an issue where telemetry data was not sent to the cloud due to the firewall being unable to resolve the destination server's FQDN even when a proxy server was configured. With this fix, the firewall properly sends telemetry data through the configured proxy server without requiring direct public DNS resolution for the telemetry server's FQDN.
|
||||||
|
|
||||||
|
## PAN-313218
|
||||||
|
|
||||||
|
Added the following CLI commands to address QoS packet drops due to bursty traffic:
|
||||||
|
|
||||||
|
- debug dataplane set qos-setting qos-param qlimit 300
|
||||||
|
- debug dataplane set qos-setting qos-param red low 50 high 90
|
||||||
|
|
||||||
|
To utilize this fix, change the parameters, disable QoS, commit changes, enable QOS, and then re-commit changes.
|
||||||
|
|
||||||
|
## PAN-304360
|
||||||
|
|
||||||
|
Fixed an issue where the firewall did not redistribute its application routes to BGP peers. This occurred in multi-mesh deployments with the multi-cloud networking feature enabled.
|
||||||
|
|
||||||
|
## PAN-285327
|
||||||
|
|
||||||
|
Fixed an issue where a memory leak occurred when processing device and vsys tags.
|
||||||
@@ -0,0 +1,9 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.1.7-h7
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address [CVE-2026-0273](https://security-stg.paloaltonetworks.com/CVE-2026-0273) and [CVE-2026-0272](https://security-stg.paloaltonetworks.com/CVE-2026-0272).
|
||||||
@@ -0,0 +1,20 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.1.7-h8
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
@@ -0,0 +1,72 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.2.10-h12
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
|
|
||||||
|
## PAN-328145
|
||||||
|
|
||||||
|
Fixed an issue where a firewall functioning as an Area Border Router did not correctly translate NSSA Type-7 LSAs to Type-5 LSAs when OSPF neighbors set the Nt bit in the NSSA Area, and routes were not advertised to upstream OSPF neighbors in the backbone area, which resulted in traffic being silently discarded.
|
||||||
|
|
||||||
|
## PAN-321699
|
||||||
|
|
||||||
|
Fixed an issue where device telemetry intermittently failed to send files, which resulted in critical alerts in system files.
|
||||||
|
|
||||||
|
## PAN-319228
|
||||||
|
|
||||||
|
Fixed an issue where External Dynamic List (EDL) refresh and commit operations remained in a pending state, which prevented any subsequent operations from completing.
|
||||||
|
|
||||||
|
## PAN-317466
|
||||||
|
|
||||||
|
Fixed an issue where SIP sessions stopped progressing after the firewall received fragmented packets, fragmented at header field.
|
||||||
|
|
||||||
|
## PAN-313700
|
||||||
|
|
||||||
|
Fixed an issue where an unexpected reboot occurred when Inline Cloud Analysis was enabled in an Anti-Spyware and Vulnerability profile.
|
||||||
|
|
||||||
|
## PAN-311658
|
||||||
|
|
||||||
|
Fixed an issue where the reportd process stopped responding, which caused the firewall to reboot.
|
||||||
|
|
||||||
|
## PAN-308775
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in active/passive configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where NTP status intermittently showed as rejected on the active firewall, which prevented the firewalls from synchronizing time.
|
||||||
|
|
||||||
|
## PAN-308606
|
||||||
|
|
||||||
|
Fixed an issue where traffic was blocked due to a mismatch between the URL category specified in the Security policy rule and the URL filter profile when custom URL categories with the same FQDN were configured.
|
||||||
|
|
||||||
|
## PAN-305835
|
||||||
|
|
||||||
|
Fixed an issue where firewalls with Memory Integrity Checking Architecture enabled rebooted unexpectedly due to accessing an invalid memory address. This occurred because the forwarding data structure index exceeded its designed limit.
|
||||||
|
|
||||||
|
## PAN-291804
|
||||||
|
|
||||||
|
Fixed an issue on Panorama where deleting objects resulted in errors indicating references in Security policy rules.
|
||||||
|
|
||||||
|
## PAN-250445
|
||||||
|
|
||||||
|
Fixed an issue where DLP logs accumulated in the logrcvr cache when using DLP in mirror mode.
|
||||||
|
|
||||||
|
## PAN-246699
|
||||||
|
|
||||||
|
Fixed an issue on Panorama where **Rule Usage** and **Apps Seen** under Security policy rules stopped incrementing.
|
||||||
@@ -0,0 +1,222 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.2.13
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
|
|
||||||
|
## PAN-328145
|
||||||
|
|
||||||
|
Fixed an issue where a firewall functioning as an Area Border Router did not correctly translate NSSA Type-7 LSAs to Type-5 LSAs when OSPF neighbors set the Nt bit in the NSSA Area, and routes were not advertised to upstream OSPF neighbors in the backbone area, which resulted in traffic being silently discarded.
|
||||||
|
|
||||||
|
## PAN-321699
|
||||||
|
|
||||||
|
Fixed an issue where device telemetry intermittently failed to send files, which resulted in critical alerts in system files.
|
||||||
|
|
||||||
|
## PAN-321150
|
||||||
|
|
||||||
|
Fixed an issue where the interface remained down after an upgrade.
|
||||||
|
|
||||||
|
## PAN-320598
|
||||||
|
|
||||||
|
Fixed an issue where internal and external DNS names did not resolve when connected to a GlobalProtect gateway.
|
||||||
|
|
||||||
|
## PAN-319798
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Panorama virtual appliances in AWS environments only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where logging disks failed to mount or reported an unknown file system type.
|
||||||
|
|
||||||
|
## PAN-319793
|
||||||
|
|
||||||
|
Fixed an issue where, after upgrading to PAN-OS 12.1.5, GlobalProtect Clientless VPN failed to access JavaScripts.
|
||||||
|
|
||||||
|
## PAN-319266
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Cloud IPS only
|
||||||
|
```
|
||||||
|
|
||||||
|
Increased scale limit for zone mappings.
|
||||||
|
|
||||||
|
## PAN-319228
|
||||||
|
|
||||||
|
Fixed an issue where External Dynamic List (EDL) refresh and commit operations remained in a pending state, which prevented any subsequent operations from completing.
|
||||||
|
|
||||||
|
## PAN-318120
|
||||||
|
|
||||||
|
Fixed an issue where SSL traffic was silently dropped when traffic was processed by a Security policy with an Anti-Spyware profile that had Inline cloud Analysis enabled for SSL C2 Detector with an action other than allow or alert.
|
||||||
|
|
||||||
|
## PAN-318106
|
||||||
|
|
||||||
|
Fixed an issue where SCM did not update device telemetry for the firewall after upgrading to an affected release.
|
||||||
|
|
||||||
|
## PAN-318030
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
VM-Series firewalls in Hyper-V only
|
||||||
|
```
|
||||||
|
|
||||||
|
) Fixed an issue where the throughput was reported to be twice as high as the actual traffic rate.
|
||||||
|
|
||||||
|
## PAN-317755
|
||||||
|
|
||||||
|
Fixed an issue on Panorama where selective push operations failed when plugin configurations included access-domain or log-collector references.
|
||||||
|
|
||||||
|
## PAN-317614
|
||||||
|
|
||||||
|
Fixed an issue where high throughput and increased packet rates caused high dataplane CPU usage.
|
||||||
|
|
||||||
|
## PAN-317466
|
||||||
|
|
||||||
|
Fixed an issue where SIP sessions stopped progressing after the firewall received fragmented packets, fragmented at header field.
|
||||||
|
|
||||||
|
## PAN-317215
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
VM-Series firewalls on ESXi with Intel E810 NICs using PCI passthrough
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where the brdagent process became unresponsive during data port initialization, which resulted in system instability, interface outages, HA split-brain conditions, and unexpected reboots during failover.
|
||||||
|
|
||||||
|
## PAN-315919
|
||||||
|
|
||||||
|
Fixed an issue where GlobalProtect pre-logon tunnel session was not cleared even after the user was logged in. With this fix, the session is cleared after the session timeout expires.
|
||||||
|
|
||||||
|
## PAN-315337
|
||||||
|
|
||||||
|
Fixed an issue where GlobalProtect throughput was reduced after an upgrade.
|
||||||
|
|
||||||
|
## PAN-315314
|
||||||
|
|
||||||
|
Fixed an issue where, when a push operation from Panorama to the firewall failed, accounting logs stopped forwarding.
|
||||||
|
|
||||||
|
## PAN-314512
|
||||||
|
|
||||||
|
Fixed an issue where the GlobalProtect portal became inaccessible when the dataplane was configured with a DHCP assigned IP address.
|
||||||
|
|
||||||
|
## PAN-314061
|
||||||
|
|
||||||
|
Fixed an issue where traffic was disrupted during IPSec rekey operations due to a 2 second delay in sending the DELETE message for the previous Security Association (SA) to the peer gateway after a new SA was negotiated.
|
||||||
|
|
||||||
|
## PAN-314020
|
||||||
|
|
||||||
|
Fixed an issue where the firewall did not decapsulate GENEVE packets when DNS Security retransmitted a DNS query after receiving a verdict from the cloud.
|
||||||
|
|
||||||
|
## PAN-313850
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
PA-1400 Series firewalls in HA configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where a split-brain condition occurred and HA1/HA2 links went down while upgrading when the HA configuration used dataplane interfaces for HA1 and a combination of HSCI and Ethernet interfaces for HA2.
|
||||||
|
|
||||||
|
## PAN-313828
|
||||||
|
|
||||||
|
Fixed an issue where the firewall did not forward traffic due to memory issues on a forwarding component.
|
||||||
|
|
||||||
|
## PAN-312330
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in active/passive HA configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where the Clientless VPN applications failed to load due to the firewall dataplane incorrectly processing session information.
|
||||||
|
|
||||||
|
## PAN-311658
|
||||||
|
|
||||||
|
Fixed an issue where the reportd process stopped responding, which caused the firewall to reboot.
|
||||||
|
|
||||||
|
## PAN-311285
|
||||||
|
|
||||||
|
Fixed an issue where a memory leak occurred related to the ospfd process, which caused RAM usage to continuously increase until the device stopped responding.
|
||||||
|
|
||||||
|
## PAN-311192
|
||||||
|
|
||||||
|
Fixed an issue where the device-telemetry collect-now process became unresponsive when the process was initiated multiple times with other processes running concurrently, which prevented subsequent telemetry collection.
|
||||||
|
|
||||||
|
## PAN-311040
|
||||||
|
|
||||||
|
Fixed an issue where the all_task process stopped responding and caused the firewall to reboot unexpectedly.
|
||||||
|
|
||||||
|
## PAN-310240
|
||||||
|
|
||||||
|
Fixed an issue where software packet buffers were completely utilized when performing a Data Loss Prevention longevity test.
|
||||||
|
|
||||||
|
## PAN-308775
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in active/passive configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where NTP status intermittently showed as rejected on the active firewall, which prevented the firewalls from synchronizing time.
|
||||||
|
|
||||||
|
## PAN-307976
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in active/active HA configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where tunnels failed to come up with the error message failed to find a socket for transmission.
|
||||||
|
|
||||||
|
## PAN-307618
|
||||||
|
|
||||||
|
Added a debug CLI command to address where remote networks for Prisma Access tenants randomly dropped monitoring packets from peer devices, which caused tunnels to be marked as down. This occurred when a CPU core suddenly experienced high utilization.
|
||||||
|
|
||||||
|
To utilize this fix, run debug dataplane set ssl-decrypt use-new-peek-window yes.
|
||||||
|
|
||||||
|
## PAN-307470
|
||||||
|
|
||||||
|
Fixed an issue where an External Dynamic List (EDL) fetch with an invalid certificate was skipped on newly provisioned GlobalProtect gateway instances.
|
||||||
|
|
||||||
|
## PAN-306356
|
||||||
|
|
||||||
|
Fixed an issue where the logrcvr process on a firewall stopped responding due to a document node being unexpectedly freed.
|
||||||
|
|
||||||
|
## PAN-300615
|
||||||
|
|
||||||
|
Fixed an issue where the pan_comm process stopped after multiple content versions were installed and the memory limits were reached.
|
||||||
|
|
||||||
|
## PAN-298960
|
||||||
|
|
||||||
|
Fixed an issue where the firewall continuously rebooted when the useridd process repeatedly restarted.
|
||||||
|
|
||||||
|
## PAN-296246
|
||||||
|
|
||||||
|
Fixed an issue where policy cache corruption led to unexpected policy rule behavior or operational instability. This occurred when an internal system process restarted while a commit was in progress or when a commit operation failed.
|
||||||
|
|
||||||
|
## PAN-295806
|
||||||
|
|
||||||
|
Fixed an issue where memory leaks on the configd process occurred due to a hash insert operation failing during connection management and SSL connections.
|
||||||
|
|
||||||
|
## PAN-294434
|
||||||
|
|
||||||
|
Fixed an issue where memory leaks occurred. These leaks were caused by two distinct scenarios: the failure to deallocate memory for a nodeset when a new nodeset was assigned to the same variable, and the failure to free a UUID hash table during error conditions.
|
||||||
|
|
||||||
|
## PAN-250445
|
||||||
|
|
||||||
|
Fixed an issue where DLP logs accumulated in the logrcvr cache when using DLP in mirror mode.
|
||||||
|
|
||||||
|
## PAN-246699
|
||||||
|
|
||||||
|
Fixed an issue on Panorama where **Rule Usage** and **Apps Seen** under Security policy rules stopped incrementing.
|
||||||
|
|
||||||
|
## PAN-234302
|
||||||
|
|
||||||
|
Fixed an issue where commit operations took longer than expected to complete due to EDL timeouts occurring on passive nodes when a service route was enabled.
|
||||||
@@ -0,0 +1,20 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.2.4-h20
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
@@ -0,0 +1,55 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.2.7-h17
|
||||||
|
---
|
||||||
|
|
||||||
|
## PAN-320598
|
||||||
|
|
||||||
|
Fixed an issue where internal and external DNS names did not resolve when connected to a GlobalProtect gateway.
|
||||||
|
|
||||||
|
## PAN-317755
|
||||||
|
|
||||||
|
Fixed an issue on Panorama where selective push operations failed when plugin configurations included access-domain or log-collector references.
|
||||||
|
|
||||||
|
## PAN-315337
|
||||||
|
|
||||||
|
Fixed an issue where GlobalProtect throughput was reduced after an upgrade.
|
||||||
|
|
||||||
|
## PAN-314319
|
||||||
|
|
||||||
|
Added a CLI command to enable and disable AHO software offload optimization.
|
||||||
|
|
||||||
|
## PAN-313606
|
||||||
|
|
||||||
|
Fixed an issue where Panorama pushed commits took longer than expected to complete without displaying an error message when committing due to slow cloud-app compilation.
|
||||||
|
|
||||||
|
## PAN-310263
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
VM-Series firewalls only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where enabling TLS1.3 in a decryption profile prevented access to websites.
|
||||||
|
|
||||||
|
## PAN-310240
|
||||||
|
|
||||||
|
Fixed an issue where software packet buffers were completely utilized when performing a Data Loss Prevention longevity test.
|
||||||
|
|
||||||
|
## PAN-307618
|
||||||
|
|
||||||
|
Added a debug CLI command to address where remote networks for Prisma Access tenants randomly dropped monitoring packets from peer devices, which caused tunnels to be marked as down. This occurred when a CPU core suddenly experienced high utilization.
|
||||||
|
|
||||||
|
To utilize this fix, run debug dataplane set ssl-decrypt use-new-peek-window yes.
|
||||||
|
|
||||||
|
## PAN-307470
|
||||||
|
|
||||||
|
Fixed an issue where an External Dynamic List (EDL) fetch with an invalid certificate was skipped on newly provisioned GlobalProtect gateway instances.
|
||||||
|
|
||||||
|
## PAN-266905
|
||||||
|
|
||||||
|
Fixed an issue where sessions ended with the message decrypt error in the logs for traffic that matched a **no-decrypt** policy.
|
||||||
|
|
||||||
|
## PAN-234302
|
||||||
|
|
||||||
|
Fixed an issue where commit operations took longer than expected to complete due to EDL timeouts occurring on passive nodes when a service route was enabled.
|
||||||
@@ -0,0 +1,44 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 11.2.7-h18
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
|
|
||||||
|
## PAN-308775
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Firewalls in active/passive configurations only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where NTP status intermittently showed as rejected on the active firewall, which prevented the firewalls from synchronizing time.
|
||||||
|
|
||||||
|
## PAN-308606
|
||||||
|
|
||||||
|
Fixed an issue where traffic was blocked due to a mismatch between the URL category specified in the Security policy rule and the URL filter profile when custom URL categories with the same FQDN were configured.
|
||||||
|
|
||||||
|
## PAN-295854
|
||||||
|
|
||||||
|
Fixed an issue where the firewall generated two URL logs for a single session.
|
||||||
|
|
||||||
|
## PAN-293707
|
||||||
|
|
||||||
|
Fixed an issue where the iotd process failed to install DPI Cloud server FQDN due to a configuration parsing failure, caused by the configuration XML memory buffer not being NULL terminated. This resulted in the accumulation of EAL logs and DLP forwarding being stopped.
|
||||||
|
|
||||||
|
## PAN-289895
|
||||||
|
|
||||||
|
Fixed an issue where, when SSL decryption was enabled, traffic matching a deny rule was incorrectly allowed until the SSL handshake was complete.
|
||||||
@@ -0,0 +1,13 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 12.1.4-h7
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address [CVE-2026-0273](https://security-stg.paloaltonetworks.com/CVE-2026-0273) and [CVE-2026-0272](https://security-stg.paloaltonetworks.com/CVE-2026-0272).
|
||||||
|
|
||||||
|
## PAN-317755
|
||||||
|
|
||||||
|
Fixed an issue on Panorama where selective push operations failed when plugin configurations included access-domain or log-collector references.
|
||||||
@@ -0,0 +1,20 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 12.1.4-h8
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
@@ -0,0 +1,25 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 12.1.7-h1
|
||||||
|
---
|
||||||
|
|
||||||
|
## PAN-320598
|
||||||
|
|
||||||
|
Fixed an issue where internal and external DNS names did not resolve when connected to a GlobalProtect gateway.
|
||||||
|
|
||||||
|
## PAN-317755
|
||||||
|
|
||||||
|
Fixed an issue on Panorama where selective push operations failed when plugin configurations included access-domain or log-collector references.
|
||||||
|
|
||||||
|
## PAN-317133
|
||||||
|
|
||||||
|
Fixed an issue where you were unable to generate a ticket for the GlobalProtect portal.
|
||||||
|
|
||||||
|
## PAN-302150
|
||||||
|
|
||||||
|
```caveat
|
||||||
|
Panorama appliances only
|
||||||
|
```
|
||||||
|
|
||||||
|
Fixed an issue where you were unable to successfully configure log collector groups due to the master node settings not populating automatically.
|
||||||
@@ -0,0 +1,44 @@
|
|||||||
|
---
|
||||||
|
type: Addressed
|
||||||
|
product: PAN-OS
|
||||||
|
version: 12.1.7-h2
|
||||||
|
---
|
||||||
|
|
||||||
|
## BLANK-000000
|
||||||
|
|
||||||
|
Fixes were made to address the following CVEs:
|
||||||
|
|
||||||
|
- [CVE-2026-0283](https://security.paloaltonetworks.com/CVE-2026-0283)
|
||||||
|
- [CVE-2026-0287](https://security.paloaltonetworks.com/CVE-2026-0287)
|
||||||
|
- [CVE-2026-0279](https://security.paloaltonetworks.com/CVE-2026-0279)
|
||||||
|
- [CVE-2026-0282](https://security.paloaltonetworks.com/CVE-2026-0282)
|
||||||
|
- [CVE-2026-0288](https://security.paloaltonetworks.com/CVE-2026-0288)
|
||||||
|
- [CVE-2026-0286](https://security.paloaltonetworks.com/CVE-2026-0286)
|
||||||
|
- [CVE-2026-0285](https://security.paloaltonetworks.com/CVE-2026-0285)
|
||||||
|
- [CVE-2026-0280](https://security.paloaltonetworks.com/CVE-2026-0280)
|
||||||
|
- [CVE-2026-0284](https://security.paloaltonetworks.com/CVE-2026-0284)
|
||||||
|
- [CVE-2026-0281](https://security.paloaltonetworks.com/CVE-2026-0281)
|
||||||
|
|
||||||
|
## PAN-324014
|
||||||
|
|
||||||
|
Fixed an issue where logging disks were reported with a byte size of zero in the system status even when they were properly mounted.
|
||||||
|
|
||||||
|
## PAN-323809
|
||||||
|
|
||||||
|
Fixed an issue where attempting to generate a ticket for the GlobalProtect portal caused Panorama to restart unexpectedly with the error message tpl is invalid.
|
||||||
|
|
||||||
|
## PAN-318619
|
||||||
|
|
||||||
|
Fixed an issue where Geneve ingress traffic did not use the correct public IP address for return traffic.
|
||||||
|
|
||||||
|
## PAN-317867
|
||||||
|
|
||||||
|
Fixed an issue where Panorama became inaccessible and a manual reboot was required to restore access. This occurred due rapid increase in memory usage on the reportd process, which led to OOM events.
|
||||||
|
|
||||||
|
## PAN-314512
|
||||||
|
|
||||||
|
Fixed an issue where the GlobalProtect portal became inaccessible when the dataplane was configured with a DHCP assigned IP address.
|
||||||
|
|
||||||
|
## PAN-313700
|
||||||
|
|
||||||
|
Fixed an issue where an unexpected reboot occurred when Inline Cloud Analysis was enabled in an Anti-Spyware and Vulnerability profile.
|
||||||
File diff suppressed because it is too large
Load Diff
+32
-4
@@ -12,9 +12,14 @@
|
|||||||
"12.1.4-h3.md",
|
"12.1.4-h3.md",
|
||||||
"12.1.4-h5.md",
|
"12.1.4-h5.md",
|
||||||
"12.1.4-h6.md",
|
"12.1.4-h6.md",
|
||||||
|
"12.1.4-h7.md",
|
||||||
|
"12.1.4-h8.md",
|
||||||
"12.1.5.md",
|
"12.1.5.md",
|
||||||
"12.1.6.md",
|
"12.1.6.md",
|
||||||
"12.1.7.md"
|
"12.1.7.md",
|
||||||
|
"12.1.7-h1.md",
|
||||||
|
"12.1.7-h2.md",
|
||||||
|
"12.1.8.md"
|
||||||
],
|
],
|
||||||
"known": [
|
"known": [
|
||||||
"12.1.2.md",
|
"12.1.2.md",
|
||||||
@@ -53,6 +58,7 @@
|
|||||||
"11.2.4-h14.md",
|
"11.2.4-h14.md",
|
||||||
"11.2.4-h15.md",
|
"11.2.4-h15.md",
|
||||||
"11.2.4-h17.md",
|
"11.2.4-h17.md",
|
||||||
|
"11.2.4-h20.md",
|
||||||
"11.2.5.md",
|
"11.2.5.md",
|
||||||
"11.2.5-h2.md",
|
"11.2.5-h2.md",
|
||||||
"11.2.6.md",
|
"11.2.6.md",
|
||||||
@@ -69,6 +75,8 @@
|
|||||||
"11.2.7-h13.md",
|
"11.2.7-h13.md",
|
||||||
"11.2.7-h14.md",
|
"11.2.7-h14.md",
|
||||||
"11.2.7-h15.md",
|
"11.2.7-h15.md",
|
||||||
|
"11.2.7-h17.md",
|
||||||
|
"11.2.7-h18.md",
|
||||||
"11.2.8.md",
|
"11.2.8.md",
|
||||||
"11.2.9.md",
|
"11.2.9.md",
|
||||||
"11.2.10.md",
|
"11.2.10.md",
|
||||||
@@ -81,8 +89,10 @@
|
|||||||
"11.2.10-h7.md",
|
"11.2.10-h7.md",
|
||||||
"11.2.10-h8.md",
|
"11.2.10-h8.md",
|
||||||
"11.2.10-h10.md",
|
"11.2.10-h10.md",
|
||||||
|
"11.2.10-h12.md",
|
||||||
"11.2.11.md",
|
"11.2.11.md",
|
||||||
"11.2.12.md"
|
"11.2.12.md",
|
||||||
|
"11.2.13.md"
|
||||||
],
|
],
|
||||||
"known": [
|
"known": [
|
||||||
"11.2.0.md",
|
"11.2.0.md",
|
||||||
@@ -141,6 +151,8 @@
|
|||||||
"11.1.4-h27.md",
|
"11.1.4-h27.md",
|
||||||
"11.1.4-h32.md",
|
"11.1.4-h32.md",
|
||||||
"11.1.4-h33.md",
|
"11.1.4-h33.md",
|
||||||
|
"11.1.4-h34.md",
|
||||||
|
"11.1.4-h35.md",
|
||||||
"11.1.5.md",
|
"11.1.5.md",
|
||||||
"11.1.5-h1.md",
|
"11.1.5-h1.md",
|
||||||
"11.1.6.md",
|
"11.1.6.md",
|
||||||
@@ -163,11 +175,14 @@
|
|||||||
"11.1.6-h32.md",
|
"11.1.6-h32.md",
|
||||||
"11.1.6-h33.md",
|
"11.1.6-h33.md",
|
||||||
"11.1.6-h34.md",
|
"11.1.6-h34.md",
|
||||||
|
"11.1.6-h35.md",
|
||||||
"11.1.7.md",
|
"11.1.7.md",
|
||||||
"11.1.7-h1.md",
|
"11.1.7-h1.md",
|
||||||
"11.1.7-h2.md",
|
"11.1.7-h2.md",
|
||||||
"11.1.7-h4.md",
|
"11.1.7-h4.md",
|
||||||
"11.1.7-h6.md",
|
"11.1.7-h6.md",
|
||||||
|
"11.1.7-h7.md",
|
||||||
|
"11.1.7-h8.md",
|
||||||
"11.1.8.md",
|
"11.1.8.md",
|
||||||
"11.1.9.md",
|
"11.1.9.md",
|
||||||
"11.1.10.md",
|
"11.1.10.md",
|
||||||
@@ -183,6 +198,7 @@
|
|||||||
"11.1.10-h26.md",
|
"11.1.10-h26.md",
|
||||||
"11.1.10-h27.md",
|
"11.1.10-h27.md",
|
||||||
"11.1.10-h28.md",
|
"11.1.10-h28.md",
|
||||||
|
"11.1.10-h30.md",
|
||||||
"11.1.11.md",
|
"11.1.11.md",
|
||||||
"11.1.12.md",
|
"11.1.12.md",
|
||||||
"11.1.13.md",
|
"11.1.13.md",
|
||||||
@@ -193,8 +209,10 @@
|
|||||||
"11.1.13-h6.md",
|
"11.1.13-h6.md",
|
||||||
"11.1.13-h7.md",
|
"11.1.13-h7.md",
|
||||||
"11.1.13-h8.md",
|
"11.1.13-h8.md",
|
||||||
|
"11.1.13-h9.md",
|
||||||
"11.1.14.md",
|
"11.1.14.md",
|
||||||
"11.1.15.md"
|
"11.1.15.md",
|
||||||
|
"11.1.16.md"
|
||||||
],
|
],
|
||||||
"known": [
|
"known": [
|
||||||
"11.1.0.md",
|
"11.1.0.md",
|
||||||
@@ -300,6 +318,8 @@
|
|||||||
"10.2.7-h18.md",
|
"10.2.7-h18.md",
|
||||||
"10.2.7-h19.md",
|
"10.2.7-h19.md",
|
||||||
"10.2.7-h34.md",
|
"10.2.7-h34.md",
|
||||||
|
"10.2.7-h35.md",
|
||||||
|
"10.2.7-h36.md",
|
||||||
"10.2.8.md",
|
"10.2.8.md",
|
||||||
"10.2.8-h13.md",
|
"10.2.8-h13.md",
|
||||||
"10.2.8-h18.md",
|
"10.2.8-h18.md",
|
||||||
@@ -322,6 +342,8 @@
|
|||||||
"10.2.10-h30.md",
|
"10.2.10-h30.md",
|
||||||
"10.2.10-h31.md",
|
"10.2.10-h31.md",
|
||||||
"10.2.10-h36.md",
|
"10.2.10-h36.md",
|
||||||
|
"10.2.10-h37.md",
|
||||||
|
"10.2.10-h39.md",
|
||||||
"10.2.11.md",
|
"10.2.11.md",
|
||||||
"10.2.11-h1.md",
|
"10.2.11-h1.md",
|
||||||
"10.2.11-h6.md",
|
"10.2.11-h6.md",
|
||||||
@@ -339,6 +361,8 @@
|
|||||||
"10.2.13-h16.md",
|
"10.2.13-h16.md",
|
||||||
"10.2.13-h18.md",
|
"10.2.13-h18.md",
|
||||||
"10.2.13-h21.md",
|
"10.2.13-h21.md",
|
||||||
|
"10.2.13-h22.md",
|
||||||
|
"10.2.13-h23.md",
|
||||||
"10.2.14-h1.md",
|
"10.2.14-h1.md",
|
||||||
"10.2.15.md",
|
"10.2.15.md",
|
||||||
"10.2.16.md",
|
"10.2.16.md",
|
||||||
@@ -346,10 +370,14 @@
|
|||||||
"10.2.16-h4.md",
|
"10.2.16-h4.md",
|
||||||
"10.2.16-h6.md",
|
"10.2.16-h6.md",
|
||||||
"10.2.16-h7.md",
|
"10.2.16-h7.md",
|
||||||
|
"10.2.16-h8.md",
|
||||||
|
"10.2.16-h9.md",
|
||||||
"10.2.18.md",
|
"10.2.18.md",
|
||||||
"10.2.18-h1.md",
|
"10.2.18-h1.md",
|
||||||
"10.2.18-h5.md",
|
"10.2.18-h5.md",
|
||||||
"10.2.18-h6.md"
|
"10.2.18-h6.md",
|
||||||
|
"10.2.18-h7.md",
|
||||||
|
"10.2.18-h8.md"
|
||||||
],
|
],
|
||||||
"known": [
|
"known": [
|
||||||
"10.2.0.md",
|
"10.2.0.md",
|
||||||
|
|||||||
Reference in New Issue
Block a user