Files

231 lines
6.8 KiB
HTML

<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row">
<th class="entry">
<div class="p">Issue ID</div>
</th>
<th class="entry">
<div class="p">Description</div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b"></b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixes were made to address the following CVEs:
<ul id="pan_os_11_2_7_h18_addressed_issues_ul-nwg_dxl_vjc" class="ul">
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0283"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0283</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0287"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0287</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0279"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0279</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0282"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0282</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0288"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0288</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0286"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0286</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0285"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0285</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0280"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0280</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0284"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0284</a
>
</li>
<li class="li">
<a
class="xref"
href="https://security.paloaltonetworks.com/CVE-2026-0281"
title=""
data-scope="external"
data-format="html"
data-type=""
target="_blank"
>CVE-2026-0281</a
>
</li>
</ul>
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-308775</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt">Firewalls in active/passive configurations only</tt
>) Fixed an issue where NTP status intermittently showed as rejected
on the active firewall, which prevented the firewalls from
synchronizing time.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-308606</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where traffic was blocked due to a mismatch between the
URL category specified in the Security policy rule and the URL filter
profile when custom URL categories with the same FQDN were configured.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-295854</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall generated two URL logs for a single
session.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-293707</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>iotd</a
>
process failed to install DPI Cloud server FQDN due to a configuration
parsing failure, caused by the configuration XML memory buffer not
being NULL terminated. This resulted in the accumulation of EAL logs
and DLP forwarding being stopped.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-289895</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where, when SSL decryption was enabled, traffic
matching a deny rule was incorrectly allowed until the SSL handshake
was complete.
</div>
</td>
</tr>
</tbody>
</table>