PAN-OS 10.2.7-h24 Addressed Issues
Focus
Focus

PAN-OS 10.2.7-h24 Addressed Issues

Table of Contents

PAN-OS 10.2.7-h24 Addressed Issues

Addressed issues for the PAN-OS 10.2.7-h24 general available hotfix release.
Issue ID
Description
PAN-279604
Fixed an issue where scheduled SaaS application usage reports were generated incorrectly, and the login page was displayed instead of the report content.
PAN-276822
Fixed an issue where the packet buffer size increased significantly when WildFire File Forwarding was continued after a threat detection and then canceled.
PAN-273994
A fix was made to address CVE-2025-0111.
PAN-273971
A fix was made to address CVE-2025-0108.
PAN-273964
Fixed an issue where SNMP scans to a firewall timed out after upgrading to a PAN-OS 10.2 release.
PAN-273278
A fix was made to address CVE-2025-0109.
PAN-271926
Fixed an issue where TLS 1.3 decryption failed with a bad record MAC error when the firewall was configured to decrypt and inspect TLS traffic.
PAN-270549
Fixed an issue where early TLS data was not handled correctly by the accumulation proxy.
PAN-268951
Fixed a CPS counter query issue that caused SNMP polling timeouts on the firewall.
PAN-268260
Fixed an issue on hardware firewalls where, when SSL decryption was enabled and Client Hello messages spanned multiple TCP segments, some SSL decrypted sessions failed.
PAN-267704
Fixed an issue where the firewall did not send an ICMP error packet to Envoy when the MSS was exceeded.
PAN-264249
Fixed an issue on the firewall where SNMP queries timed out when using SNMP.
PAN-259055
Fixed an issue where the firewall stopped responding when receiving SNMPv3 traps.
PAN-257390
(PA-5250 firewalls only) Fixed an issue where the logrcvr process stopped responding due to a segmentation fault.
PAN-244907
A fix was made to address CVE-2024-9468.
PAN-243244
Fixed an issue where decryption failed for TLSv1.3 with the error message early close notify.
PAN-240397
Fixed an issue where the useridd process memory usage increased with each MDM reconnected attempt.
PAN-232550
Fixed an issue where SNMPv3 authentication failed when using SHA-512 Auth protocol.
PAN-231395
Fixed an intermittent issue where the OCSP query failed.
PAN-224938
Fixed an issue where the CLI command settings for set system setting logging max-log-rate did not persist after a mgmtsrvr process restart.
PAN-222484
A fix was made to address CVE-2024-5920.
PAN-222193
Fixed an issue where the length of the TCP timestamp option was not considered when the proxy sent out data, which caused oversized packets to be sent out and fragmented or dropped.
PAN-213956
Fixed an issue where the firewall interface did not go down even after the peer link/switch port went down.
PAN-207003
Fixed an issue where the logrcvr process netflow buffer was not reset which resulted in duplicate netflow records.
PAN-164885
Fixed an issue on Panorama where Commit and Push or Push to Devices operations failed when an external dynamic list was configured to check for updates every 5 minutes due to the commit and external dynamic fetch processes overlapping.