PAN-OS 10.2.12-h6 Addressed Issues
Focus
Focus

PAN-OS 10.2.12-h6 Addressed Issues

Table of Contents

PAN-OS 10.2.12-h6 Addressed Issues

Addressed issues for the PAN-OS 10.2.12-h6 general available hotfix release.
Issue ID
Description
PAN-279604
Fixed an issue where scheduled SaaS application usage reports were generated incorrectly, and the login page was displayed instead of the report content.
PAN-273994
A fix was made to address CVE-2025-0111.
PAN-273971
A fix was made to address CVE-2025-0108.
PAN-273278
A fix was made to address CVE-2025-0109.
PAN-273277
Fixed an issue where GlobalProtect clients on macOS devices were prompted to enter their username and password for Kerberos SSO authentication.
PAN-272006
Fixed an issue where the firewall did not trigger a kernel core dump as a large core when the CPLD (Complex Programmable Logic Device) sent a Non-Maskable Interrupt (NMI) to the CPU.
PAN-271926
Fixed an issue where TLS 1.3 decryption failed with a bad record MAC error when the firewall was configured to decrypt and inspect TLS traffic.
PAN-270549
Fixed an issue where early TLS data was not handled correctly by the accumulation proxy.
PAN-269899
Fixed an issue where the Panorama web interface was slower than expected when querying for device tags.
PAN-269731
Fixed an issue where Panorama did not display logs from firewalls after upgrading to PAN-OS 10.2.11 on devices due to Elasticsearch (ES) getting restarted continuously.
PAN-268727
Fixed an issue where traffic was dropped when the accumulation proxy was enabled and header insertion modified packets.
PAN-268815
Fixed an issue where the firewall entered a non-functional state due to duplicate entries in the shared memory.
PAN-268319
Fixed an issue where Receive Time and Time Generated were not visible as attributes in the Filter Builder for system logs and URL filtering logs.
PAN-268260
Fixed an issue on hardware firewalls where, when SSL decryption was enabled and Client Hello messages spanned multiple TCP segments, some SSL decrypted sessions failed.
PAN-267781
Fixed an issue where Panorama did not display the Source Dynamic Address Group.
PAN-267671
Fixed an issue where the firewall rebooted unexpectedly due to the all_task process restarting and repeated OOM conditions occurring on the pan_task process.
PAN-265179
Fixed an issue where a kernel race condition caused the firewall to reboot with a kernel panic.
PAN-263052
Fixed an issue where the request logdb migrate-to-panorama start end-time <start-time> <type> CLI command did not work as expected, and you were unable to resend logs from a firewall to Panorama or a log collector.
PAN-261739
(VM-Series firewalls in Microsoft Azure environments only) Fixed an issue where the firewall displayed 0 for the physical port counters read from MAC.
PAN-258570
Fixed an issue where the varrcvr process memory use increased to 16 GB.
PAN-257327
(PA-5440 firewalls only) Fixed an issue where a failover event occurred unexpectedly on the firewall.
PAN-253921
Fixed an issue where the firewall displayed the following error message: critical userid register 0 fail to integrate the update of registered ip addresses since 2 seconds ago; critical system log alerts observed.
PAN-241004
Fixed an issue where DNS Proxy dropped client requests of the type ns for a root domain.
PAN-237246
Fixed an issue where the all_pktproc process repeatedly restarted, which caused the firewall to go into a nonfunctional state.
PAN-228877
(PA-5200 Series, PA-5400 Series, and PA-7000 Series firewalls only) Fixed an issue with out-of-memory (OOM) conditions that caused slot restarts due to pan_cmd consuming more than 300MB.
PAN-225213
Fixed an issue where Push All Changes displayed changes that were already committed in the push scope for another device group after performing a selective commit and selective push to the first device group.
PAN-223652
Fixed an issue where data was not thread safe and led to concurrent read/write issues that caused GPSVC to stop working unexpectedly.
xThanks for visiting https://docs.paloaltonetworks.com. To improve your experience when accessing content across our site, please add the domain to the allow list on your ad blocker application.