144 lines
3.6 KiB
Markdown
144 lines
3.6 KiB
Markdown
---
|
|
type: Addressed
|
|
product: PAN-OS
|
|
version: 11.0.0
|
|
---
|
|
|
|
## PAN-231823
|
|
|
|
A fix was made to address CVE-2024-5916.
|
|
|
|
## PAN-207505
|
|
|
|
Fixed an issue where Email schedules (MonitorPDF ReportsEmail Scheduler) were not supported for SaaS Application Usage (MonitorPDF ReportsSaaS Application Usage) reports.
|
|
|
|
## PAN-204615
|
|
|
|
Fixed an issue where BGP sessions could flap even when an unrelated
|
|
configuration was committed. This resulted in the BGP session going
|
|
down and getting established again. As a result, BGP routes were
|
|
exchanged again, which could lead to momentary traffic disruption if
|
|
BGP routes were in use for establishing traffic.
|
|
|
|
## PAN-202783
|
|
|
|
```caveat
|
|
PA-7000 Series firewalls with 100G NPC (Network Processing Cards) only
|
|
```
|
|
|
|
Fixed an issue where sudden,
|
|
large bursts of traffic destined for an interface that was down
|
|
caused packet buffers to fill, which stalled path monitor heartbeat
|
|
packets.
|
|
|
|
## PAN-202535
|
|
|
|
Fixed an issue where the Device Telemetry
|
|
configuration for a region was unable to be set or edited via the
|
|
web interface.
|
|
|
|
## PAN-199726
|
|
|
|
Fixed an issue with firewalls in HA configurations
|
|
where both firewalls responded with gARP messages after a switchover.
|
|
|
|
## PAN-199654
|
|
|
|
Fixed an issue where ACC reports did not
|
|
work for custom RBAC users when more than 12 access domains were
|
|
associated with the username.
|
|
|
|
## PAN-198733
|
|
|
|
```caveat
|
|
PA-5450 firewalls only
|
|
```
|
|
|
|
Fixed
|
|
an issue where tcpdump was hardcoded
|
|
to eth0 instead of bond0.
|
|
|
|
## PAN-198332
|
|
|
|
```caveat
|
|
PA-5400 Series only
|
|
```
|
|
|
|
Fixed an
|
|
issue where swapping Network Processing Cards (NPCs) caused high
|
|
root partition use.
|
|
|
|
## PAN-198244
|
|
|
|
Fixed an issue where using the load config partial CLI
|
|
command to x-paths removed address object entries from address groups.
|
|
|
|
## PAN-197383
|
|
|
|
Fixed an issue where, after upgrading to
|
|
PAN-OS 10.2 release, the firewall ran a RAID rebuild for the log
|
|
disk after ever every reboot.
|
|
|
|
## PAN-197341
|
|
|
|
Fixed an issue on Panorama where, when you created multiple device group objects with the same
|
|
name in the shared device group and any additional device groups (PanoramaDevice Groups) under the same device group hierarchy that were used
|
|
in one or more policies, renaming the object with a shared name in
|
|
any device group caused the object name to change in the policies
|
|
that it was used in. This issue occurred with device group objects
|
|
that were referenced in a Security policy rule.
|
|
|
|
## PAN-196558
|
|
|
|
Fixed an issue where IP address tag policy
|
|
updates were delayed.
|
|
|
|
## PAN-196398
|
|
|
|
```caveat
|
|
PA-7000 Series SMC-B firewalls only
|
|
```
|
|
|
|
Fixed an issue where the firewall did not capture data when the
|
|
active management interface was MGT-B.
|
|
|
|
## PAN-194615
|
|
|
|
Fixed an issue where the packet broker session
|
|
timeout value did not match the master sessions timeout value after
|
|
the firewall received a TCP FIN or RST packet. The fix ensures that
|
|
Broker session times out within 1 second after the master session
|
|
timed out.
|
|
|
|
## PAN-194152
|
|
|
|
```caveat
|
|
PA-5410, PA-5420, PA-5430, and PA-5440 firewalls in HA configurations only
|
|
```
|
|
|
|
Fixed an issue where HA1-A
|
|
and HA1-B port information didn't match to front panel mappings.
|
|
|
|
## PAN-189270
|
|
|
|
Fixed an issue that caused a memory leak
|
|
on the reportd process.
|
|
|
|
## PAN-188096
|
|
|
|
```caveat
|
|
VM-Series firewalls only
|
|
```
|
|
|
|
Fixed
|
|
an issue where, on firewalls licensed with Software NGFW Credit
|
|
(VM-FLEX-4 and higher), HA clustering was unable to be established.
|
|
|
|
## PAN-171714
|
|
|
|
Fixed an issue where, when NetBIOS format
|
|
(domain\user) was used for the IP address-to-username mapping and
|
|
the firewall received the group mapping information from the Cloud
|
|
Identity Engine, the firewall did not match the user to the correct
|
|
group.
|