Add reference files for new releases

This commit is contained in:
2026-07-08 12:05:12 -05:00
parent 4eb182d14a
commit b0d54e768d
25 changed files with 8488 additions and 0 deletions
@@ -0,0 +1,63 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0273"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0273</a
>
and
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0272"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0272</a
>.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-325786</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where content updates with active traffic failed.
</div>
</td>
</tr>
</tbody>
</table>
+218
View File
@@ -0,0 +1,218 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul
id="pan_os_10_2_10_h39_addressed_issues_ul-nwg_dxl_vjc"
class="ul"
>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-314630</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall repeatedly rebooted and entered
maintenance mode, and a factory reset was required.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-300055</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall experienced high disk utilization in
the /opt/pancfg/mgmt/content-preview directory due to older content
data not being automatically removed when an error occurred during the
process.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-298788</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the /pancfg partition on the Azure Cloud NGFW
reached 100% utilization, which caused commit failures.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-284073</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue on the firewall that caused commits to fail and the web
interface to become inaccessible.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-278611</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue on Panorama where software images were not purged from
the /opt/pancfg/mgmt/sw-images folder.
</div>
</td>
</tr>
</tbody>
</table>
@@ -0,0 +1,52 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0273"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0273</a
>
and
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0272"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0272</a
>.
</div>
</td>
</tr>
</tbody>
</table>
+156
View File
@@ -0,0 +1,156 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul
id="pan_os_10_2_13_h23_addressed_issues_ul-nwg_dxl_vjc"
class="ul"
>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
</tbody>
</table>
@@ -0,0 +1,52 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0273"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0273</a
>
and
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0272"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0272</a
>.
</div>
</td>
</tr>
</tbody>
</table>
+153
View File
@@ -0,0 +1,153 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_10_2_16_h9_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
</tbody>
</table>
@@ -0,0 +1,52 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0273"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0273</a
>
and
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0272"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0272</a
>.
</div>
</td>
</tr>
</tbody>
</table>
+189
View File
@@ -0,0 +1,189 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_10_2_18_h8_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-317466</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where SIP sessions stopped progressing after the
firewall received fragmented packets, fragmented at header field.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-306555</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall stopped responding, which led to
service outages.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-295803</b></div>
</td>
<td class="entry relcol">
<div class="p">
Addressed a memory leak issue under sc3 and automatic commit recovery
(ACR) code path.
</div>
</td>
</tr>
</tbody>
</table>
@@ -0,0 +1,65 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0273"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0273</a
>
and
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0272"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0272</a
>.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-293673</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall stopped all tasks due to an OOM
condition caused by a scheduled log export using FTP to an external
FTP server.
</div>
</td>
</tr>
</tbody>
</table>
+153
View File
@@ -0,0 +1,153 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_10_2_7_h36_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
</tbody>
</table>
+268
View File
@@ -0,0 +1,268 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul
id="pan_os_11_1_10_h30_addressed_issues_ul-nwg_dxl_vjc"
class="ul"
>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-326354</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>sslmgr</a
>
process stopped responding when attempting to display the OSCP host
cache.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-324370</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where IDE traffic did not function as expected when
both HTTP head insertion and DLP inspection were enabled.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-322281</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt">Firewalls in HA configurations only</tt>) Fixed an
issue where the HA 2 interface did not come up on the passive
firewall, which resulted in the firewall being unable to join the HA
pair.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-321816</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where processes stopped responding unexpectedly.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-319504</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where telemetry data was not sent to the cloud due to
the firewall being unable to resolve the destination server's FQDN
even when a proxy server was configured. With this fix, the firewall
properly sends telemetry data through the configured proxy server
without requiring direct public DNS resolution for the telemetry
server's FQDN.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-304360</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall did not redistribute its application
routes to BGP peers. This occurred in multi-mesh deployments with the
multi-cloud networking feature enabled.
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-286386 </b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where GlobalProtect users were unable to connect.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-285327</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where a memory leak occurred when processing device and
vsys tags.
</div>
</td>
</tr>
</tbody>
</table>
+304
View File
@@ -0,0 +1,304 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead" data-sticky-top="61.2" style="top: 61.2px">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_11_1_13_h9_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-326677</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where a selective push from Panorama to the firewall
was successful even when applying rename operation failed in selective
push, which resulted in configurations on the firewall being deleted.
With this fix, the selective push will fail when applying rename
operation fails.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-326354</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>sslmgr</a
>
process stopped responding when attempting to display the OSCP host
cache.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-324370</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where IDE traffic did not function as expected when
both HTTP head insertion and DLP inspection were enabled.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-321816</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where processes stopped responding unexpectedly.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-321699</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where device telemetry intermittently failed to send
files, which resulted in critical alerts in system files.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-319504</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where telemetry data was not sent to the cloud due to
the firewall being unable to resolve the destination server's FQDN
even when a proxy server was configured. With this fix, the firewall
properly sends telemetry data through the configured proxy server
without requiring direct public DNS resolution for the telemetry
server's FQDN.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-318106</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where SCM did not update device telemetry for the
firewall after upgrading to an affected release.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-312442</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where 403 errors occurred when performing "show config
effective-running" API query after downgrading to an affected PAN-OS
release.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-308876</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where upgrades to managed firewalls from Panorama
failed.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-304360</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall did not redistribute its application
routes to BGP peers. This occurred in multi-mesh deployments with the
multi-cloud networking feature enabled.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-297370</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where pushing a new object from Panorama to a Cloud
NGFW Device Group unexpectedly removed existing Panorama-pushed policy
rules, even though the
<span class="ph uicontrol">Push Preview</span> did not show any
deletions, which led to traffic disruptions.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-286386</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where GlobalProtect users were unable to connect
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry"><div class="p">PAN-285327</div></td>
<td class="entry relcol">
<div class="p">
Fixed an issue where a memory leak occurred when processing device and
vsys tags.
</div>
</td>
</tr>
</tbody>
</table>
File diff suppressed because it is too large Load Diff
@@ -0,0 +1,52 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0273"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0273</a
>
and
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0272"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0272</a
>.
</div>
</td>
</tr>
</tbody>
</table>
+153
View File
@@ -0,0 +1,153 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_11_1_4_h35_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
</tbody>
</table>
+223
View File
@@ -0,0 +1,223 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_11_1_6_h35_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-319504</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where telemetry data was not sent to the cloud due to
the firewall being unable to resolve the destination server's FQDN
even when a proxy server was configured. With this fix, the firewall
properly sends telemetry data through the configured proxy server
without requiring direct public DNS resolution for the telemetry
server's FQDN.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-313218</b></div>
</td>
<td class="entry relcol">
<div class="p">
Added the following CLI commands to address QoS packet drops due to
bursty traffic:
</div>
<ul class="ul">
<li class="li">
<span class="ph systemoutput"
>debug dataplane set qos-setting qos-param qlimit 300</span
>
</li>
<li class="li">
<span class="ph systemoutput"
>debug dataplane set qos-setting qos-param red low 50 high
90</span
>
</li>
</ul>
<div class="p">
To utilize this fix, change the parameters, disable QoS, commit
changes, enable QOS, and then re-commit changes.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-304360</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall did not redistribute its application
routes to BGP peers. This occurred in multi-mesh deployments with the
multi-cloud networking feature enabled.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-285327</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where a memory leak occurred when processing device and
vsys tags.
</div>
</td>
</tr>
</tbody>
</table>
+52
View File
@@ -0,0 +1,52 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0273"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0273</a
>
and
<a
class="xref"
href="https://security-stg.paloaltonetworks.com/CVE-2026-0272"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0272</a
>.
</div>
</td>
</tr>
</tbody>
</table>
+153
View File
@@ -0,0 +1,153 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_11_1_7_h8_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
</tbody>
</table>
+331
View File
@@ -0,0 +1,331 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul
id="pan_os_11_2_10_h12_addressed_issues_ul-nwg_dxl_vjc"
class="ul"
>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-328145</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where a firewall functioning as an Area Border Router
did not correctly translate NSSA Type-7 LSAs to Type-5 LSAs when OSPF
neighbors set the Nt bit in the NSSA Area, and routes were not
advertised to upstream OSPF neighbors in the backbone area, which
resulted in traffic being silently discarded.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-321699</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where device telemetry intermittently failed to send
files, which resulted in critical alerts in system files.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-319228</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where External Dynamic List (EDL) refresh and commit
operations remained in a pending state, which prevented any subsequent
operations from completing.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-317466</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where SIP sessions stopped progressing after the
firewall received fragmented packets, fragmented at header field.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-313700</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where an unexpected reboot occurred when Inline Cloud
Analysis was enabled in an Anti-Spyware and Vulnerability profile.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-311658</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>reportd</a
>
process stopped responding, which caused the firewall to reboot.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-308775</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt">Firewalls in active/passive configurations only</tt
>) Fixed an issue where NTP status intermittently showed as rejected
on the active firewall, which prevented the firewalls from
synchronizing time.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-308606</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where traffic was blocked due to a mismatch between the
URL category specified in the Security policy rule and the URL filter
profile when custom URL categories with the same FQDN were configured.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-305835</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where firewalls with Memory Integrity Checking
Architecture enabled rebooted unexpectedly due to accessing an invalid
memory address. This occurred because the forwarding data structure
index exceeded its designed limit.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-291804</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue on Panorama where deleting objects resulted in errors
indicating references in Security policy rules.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-250445</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where DLP logs accumulated in the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>logrcvr</a
>
cache when using DLP in mirror mode.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-246699</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue on Panorama where
<span class="ph uicontrol">Rule Usage</span> and
<span class="ph uicontrol">Apps Seen</span> under Security policy
rules stopped incrementing.
</div>
</td>
</tr>
</tbody>
</table>
+794
View File
@@ -0,0 +1,794 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_11_2_13_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-328145</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where a firewall functioning as an Area Border Router
did not correctly translate NSSA Type-7 LSAs to Type-5 LSAs when OSPF
neighbors set the Nt bit in the NSSA Area, and routes were not
advertised to upstream OSPF neighbors in the backbone area, which
resulted in traffic being silently discarded.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-321699</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where device telemetry intermittently failed to send
files, which resulted in critical alerts in system files.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-321150</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the interface remained down after an upgrade.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-320598</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where internal and external DNS names did not resolve
when connected to a GlobalProtect gateway.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-319798</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt"
>Panorama virtual appliances in AWS environments only</tt
>) Fixed an issue where logging disks failed to mount or reported an
unknown file system type.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-319793</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where, after upgrading to PAN-OS 12.1.5, GlobalProtect
Clientless VPN failed to access JavaScripts.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-319266</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt">Cloud IPS only</tt>) Increased scale limit for zone
mappings.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-319228</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where External Dynamic List (EDL) refresh and commit
operations remained in a pending state, which prevented any subsequent
operations from completing.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-318120</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where SSL traffic was silently dropped when traffic was
processed by a Security policy with an Anti-Spyware profile that had
Inline cloud Analysis enabled for SSL C2 Detector with an action other
than allow or alert.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-318106</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where SCM did not update device telemetry for the
firewall after upgrading to an affected release.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-318030</b></div>
</td>
<td class="entry relcol">
<div class="p">
<tt class="ph tt">VM-Series firewalls in Hyper-V only</tt>) Fixed an
issue where the throughput was reported to be twice as high as the
actual traffic rate.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-317755</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue on Panorama where selective push operations failed when
plugin configurations included access-domain or log-collector
references.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-317614</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where high throughput and increased packet rates caused
high dataplane CPU usage.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-317466</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where SIP sessions stopped progressing after the
firewall received fragmented packets, fragmented at header field.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-317215</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt"
>VM-Series firewalls on ESXi with Intel E810 NICs using PCI
passthrough</tt
>) Fixed an issue where the
<span class="ph systemoutput">brdagent</span> process became
unresponsive during data port initialization, which resulted in system
instability, interface outages, HA split-brain conditions, and
unexpected reboots during failover.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-315919</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where GlobalProtect pre-logon tunnel session was not
cleared even after the user was logged in. With this fix, the session
is cleared after the session timeout expires.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-315337</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where GlobalProtect throughput was reduced after an
upgrade.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-315314</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where, when a push operation from Panorama to the
firewall failed, accounting logs stopped forwarding.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-314512</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the GlobalProtect portal became inaccessible when
the dataplane was configured with a DHCP assigned IP address.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-314061</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where traffic was disrupted during IPSec rekey
operations due to a 2 second delay in sending the DELETE message for
the previous Security Association (SA) to the peer gateway after a new
SA was negotiated.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-314020</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall did not decapsulate GENEVE packets
when DNS Security retransmitted a DNS query after receiving a verdict
from the cloud.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-313850</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt"
>PA-1400 Series firewalls in HA configurations only</tt
>) Fixed an issue where a split-brain condition occurred and HA1/HA2
links went down while upgrading when the HA configuration used
dataplane interfaces for HA1 and a combination of HSCI and Ethernet
interfaces for HA2.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-313828</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall did not forward traffic due to
memory issues on a forwarding component.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-312330</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt"
>Firewalls in active/passive HA configurations only</tt
>) Fixed an issue where the Clientless VPN applications failed to load
due to the firewall dataplane incorrectly processing session
information.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-311658</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>reportd</a
>
process stopped responding, which caused the firewall to reboot.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-311285</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where a memory leak occurred related to the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>ospfd</a
>
process, which caused RAM usage to continuously increase until the
device stopped responding.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-311192</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>device-telemetry collect-now</a
>
process became unresponsive when the process was initiated multiple
times with other processes running concurrently, which prevented
subsequent telemetry collection.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-311040</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>all_task</a
>
process stopped responding and caused the firewall to reboot
unexpectedly.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-310240</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where software packet buffers were completely utilized
when performing a Data Loss Prevention longevity test.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-308775</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt">Firewalls in active/passive configurations only</tt
>) Fixed an issue where NTP status intermittently showed as rejected
on the active firewall, which prevented the firewalls from
synchronizing time.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-307976</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt"
>Firewalls in active/active HA configurations only</tt
>) Fixed an issue where tunnels failed to come up with the error
message
<span class="ph systemoutput"
>failed to find a socket for transmission</span
>.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-307618</b></div>
</td>
<td class="entry relcol">
<div class="p">
Added a debug CLI command to address where remote networks for Prisma
Access tenants randomly dropped monitoring packets from peer devices,
which caused tunnels to be marked as down. This occurred when a CPU
core suddenly experienced high utilization.
</div>
<div class="p">
To utilize this fix, run
<span class="ph systemoutput"
>debug dataplane set ssl-decrypt use-new-peek-window yes</span
>.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-307470</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where an External Dynamic List (EDL) fetch with an
invalid certificate was skipped on newly provisioned GlobalProtect
gateway instances.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-306356</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>logrcvr</a
>
process on a firewall stopped responding due to a document node being
unexpectedly freed.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-300615</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>pan_comm</a
>
process stopped after multiple content versions were installed and the
memory limits were reached.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-298960</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall continuously rebooted when the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>useridd</a
>
process repeatedly restarted.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-296246</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where policy cache corruption led to unexpected policy
rule behavior or operational instability. This occurred when an
internal system process restarted while a commit was in progress or
when a commit operation failed.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-295806</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where memory leaks on the
<span class="ph systemoutput">configd</span> process occurred due to a
hash insert operation failing during connection management and SSL
connections.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-294434</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where memory leaks occurred. These leaks were caused by
two distinct scenarios: the failure to deallocate memory for a nodeset
when a new nodeset was assigned to the same variable, and the failure
to free a UUID hash table during error conditions.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-250445</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where DLP logs accumulated in the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>logrcvr</a
>
cache when using DLP in mirror mode.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-246699</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue on Panorama where
<span class="ph uicontrol">Rule Usage</span> and
<span class="ph uicontrol">Apps Seen</span> under Security policy
rules stopped incrementing.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-234302</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where commit operations took longer than expected to
complete due to EDL timeouts occurring on passive nodes when a service
route was enabled.
</div>
</td>
</tr>
</tbody>
</table>
+153
View File
@@ -0,0 +1,153 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_11_2_4_h20_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
</tbody>
</table>
+230
View File
@@ -0,0 +1,230 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_11_2_7_h18_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-308775</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt">Firewalls in active/passive configurations only</tt
>) Fixed an issue where NTP status intermittently showed as rejected
on the active firewall, which prevented the firewalls from
synchronizing time.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-308606</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where traffic was blocked due to a mismatch between the
URL category specified in the Security policy rule and the URL filter
profile when custom URL categories with the same FQDN were configured.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-295854</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall generated two URL logs for a single
session.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-293707</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>iotd</a
>
process failed to install DPI Cloud server FQDN due to a configuration
parsing failure, caused by the configuration XML memory buffer not
being NULL terminated. This resulted in the accumulation of EAL logs
and DLP forwarding being stopped.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-289895</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where, when SSL decryption was enabled, traffic
matching a deny rule was incorrectly allowed until the SSL handshake
was complete.
</div>
</td>
</tr>
</tbody>
</table>
+153
View File
@@ -0,0 +1,153 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_12_1_4_h8_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
</tbody>
</table>
+238
View File
@@ -0,0 +1,238 @@
<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_12_1_7_h2_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-324014</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where logging disks were reported with a byte size of
zero in the system status even when they were properly mounted.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-323809</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where attempting to generate a ticket for the
GlobalProtect portal caused Panorama to restart unexpectedly with the
error message <span class="ph systemoutput">tpl is invalid</span>.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-318619</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where Geneve ingress traffic did not use the correct
public IP address for return traffic.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-317867</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where Panorama became inaccessible and a manual reboot
was required to restore access. This occurred due rapid increase in
memory usage on the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>reportd</a
>
process, which led to OOM events.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p">P<b class="ph b">AN-314512</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the GlobalProtect portal became inaccessible when
the dataplane was configured with a DHCP assigned IP address.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-313700</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where an unexpected reboot occurred when Inline Cloud
Analysis was enabled in an Anti-Spyware and Vulnerability profile.
</div>
</td>
</tr>
</tbody>
</table>
File diff suppressed because it is too large Load Diff