PAN-OS 11.1.6-h32 Addressed Issues
Focus
Focus

PAN-OS 11.1.6-h32 Addressed Issues

Table of Contents

PAN-OS 11.1.6-h32 Addressed Issues

Lists the addressed issues in PAN-OS 11.1.6-h32.
After upgrading to this release, all GlobalProtect users will be required to reauthenticate.
Issue ID
Description
Fixes were made to address the following CVEs:
PAN-323243
Fixed an issue where a configd crash occurred when the Policies > Security view was updated or refreshed in the web interface.
PAN-322281
(Firewalls in HA configurations only) Fixed an issue where the HA 2 interface did not come up on the passive firewall, which resulted in the firewall being unable to join the HA pair.
PAN-314126
Fixed an issue where session rematch did not properly apply updated Security policy rules to existing traffic flows after committing changes, which caused traffic to still be allowed when a new Security policy was set to Deny.
PAN-311166
Fixed an issue where the firewall rebooted unexpectedly to the all_task_1 process repeatedly restarting.
PAN-308377
(PA-7050 firewalls in HA configurations only) Fixed an issue where the firewall reached 100% disk utilization due to the logrcvr process repeatedly restarting and dumping core files due to a blocked hints processing thread, which caused a failover.
PAN-307901
Fixed an issue where a leak in decryption counters caused resource exhaustion, which led to a GlobalProtect service outage.
PAN-307714
(VM-Series firewalls only) Fixed an issue where insufficient i-node space was available on the sysroot0 partition.
PAN-302196
Fixed an issue where the dataplane stopped responding when cleaning up expired sessions currently in Advanced Threat Prevention hold mode.