Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

Resolved issues

The following issues have been fixed in version 6.2.0. For inquiries about a particular bug, contact Customer Service & Support.

Bug ID

Description

413419

FortiClient and EMS should prevent installation and upgrade to unsupported OS versions.

460508

FortiClient (Windows) does not run AV scan on USB insertion after rebooting.

472223 FortiClient (Windows) does not allow certificate selection for SSL VPN.
481003 FortiClient causes longer logon time to terminal server (Citrix) for first user.
481361 VPN before logon does not appear on Windows 10 x64 after enabling even after reboot.
483523 A black screen occurs for a few minutes after login/logoff.
495880 Non-administrator domain users can stop/pause USB media scans that EMS configuration is enforcing.
497132 When a FortiClient (Windows) endpoint is quarantined for the very first time, the pre-established HTTPS connections are not blocked.
505191 Remote Access (IPsec VPN) loses the saved username/password after upgrade.
506548 Vulnerability scan results do not display on EMS.
510748 When FortiClient 5.6 is installed on a different drive, such as E:\, and manually upgraded to 6.0 or later, the upgrade completes but FortiClient fails to launch after reboot.
512247 FortiClient (Windows) does not show full details of onnet/online status.

513213

AntiExploit Engine blocks legitimate applications.

513932

FortiClient (Windows) sends no CERT payload during IKE2 certificate authentication.

514115 FortiClient (Windows) loses the saved password after upgrading from 5.6.x and disconnecting an autoconnected IPsec VPN.

514799

Split DNS does not include news.163.com when configured for 163.com.

515473 Hiding any feature except Application Firewall causes FortiClient (Windows) to report the feature as installed and not enabled.
515937 ipsec.exe crashes in VCRUNTIME140.dll version 14.0.24210.0.
516325 Software Inventory does not show all applications installed on the user PC.
516394 FortiClient (Windows) freezes on the patching progress screen and also causes the host machine to hang up.
516544 The user cannot save a username with a certificate in SSL VPN with a profile that EMS is managing.

516841

FortiClient (Windows) Sandbox still holds files with sizes larger than 200 MB until timeout.

518103 FortiClient (Windows) fails to connect to VPN from task tray with user certification authentication (no username/password).

518691

FSSO FortiClient mobility agent and PC virtual Ethernet interfaces.

518771 FortiShield blocks Forticlient.exe from changing the registry - FA_Scheduler.
519244 fortisniff2.sys crashes on FortiClient (Windows).
520808 FortiClient fails certificate validation due to ignored intermediate CA.
521175 Windows Security Center on Windows 10 shows FortiClient RTP as enabled even if AV is disabled in FortiClient (Windows).
521198 FortiClient (Windows) deletes the IPsec VPN username and password when a profile is changed on EMS.
522022 Quick/full scan causes BSOD on Windows 7.
525417 FortiElevate.exe does not have a digital signature like the other installed files.
525536 FortiClient experiences an assertion fail when clicking the Vulnerability Scan tab.
525542 After laptop bootup or wakeup, FortiClient tries to autoconnect even though it is onnet.
525811 FortiClient (Windows) blocks access to files on mapped home drives.
525990 The FortiClient user avatar agent crashes every time that the user logs in.
526229 FortiClient AV locks Microsoft Office files and does not allow the user to save them.
526286 A complex preshared secret does not work if entered via the GUI.
527471 FortiClient (Windows) GUI displays the content of any text file.
528590 Alert when updates available is on despite the configuration of <auto_patch> and <update_action disable>.
531176 FortiClient does not honor the configured FortiManager signature update port.
531647 FortiClient (Windows) does not restore VPN autoconnect logic after manual connection.
532068 FortiClient cannot see the certificate when the certificate subject contains diacritics.
532942 VPN before logon does not work. FortiClient (Windows) syncs with the EMS profile, but the user cannot see the FortiClient VPN icon on the logon page.
532949 Enabling VPN before logon disables malware scanning.
534146 AV reported placeholder AV events to EMS.
534306 The user can replace the .exe files in the FortiClient installation folder.
534650 <allow_standard_user_use_system_cert> does not work for SSL IPv6.
534786 A prepared package with Security Fabric Agent disabled should not have logging Telemetry enabled.
535114 The user cannot select a user certificate when reconnecting to a managed SSL VPN profile.
535699 FortiClient fails to start an on-demand AV scan.

539387

VPN autodial does not work when using the domain name to register to EMS.

541225

An equal sign (=) in group names breaks SSL VPN FortiClient two-factor authentication.

541420

The user cannot log into Windows after enabling VPN before logon.

542918

Windows 8.1 does not boot after installing FortiClient (Windows).

543362

FortiClient does not register as an AV product on Windows 7 and 8.1.

543624

The user can access files before the configured response timeout.

544288

FortiClient does not scan for vulnerabilities when initiated from EMS.

544632

fortiaptfilter.sys causes BSOD.

546140

The FortiClient (Windows) GUI displays incorrectly when trying to establish VPN connection from FortiTray.

546525

FortiClient (Windows) blocks web traffic due to two FortiProxy services running at the same time.

546648

IPsec VPN autoconnect does not work after re-login.

546658

FortiClient GUI is stuck when connecting to IPSec VPN with password renewal.

547445

VPN offnet autoconnect does not work.

547636

FortiClient Sandbox and Cloud Scan turn upper-case exclusion to lower-case.

547713

FortiClient cannot connect to EMS when the user is a member of many groups with names that are 20 characters long.

547928

FortiClient Sandbox reports network error for a valid Sandbox.

548226

FortiClient can disconnect from EMS when the EMS profile requires a password to disconnect from EMS.

549103

FortiClient should handle switching between a FortiSandbox appliance configuration and FortiSandbox Cloud configuration in EMS.

549589

FortiClient (Windows) retrieves wrong FortiAnalyzer management IDs when registered to EMS with Telemetry.

Common Vulnerabilities and Exposures
Bug ID Description

433685

FortiClient (Windows) is no longer vulnerable to the following CVE reference:

  • 2019-5589

Visit https://fortiguard.com/psirt for more information.

Resolved issues

The following issues have been fixed in version 6.2.0. For inquiries about a particular bug, contact Customer Service & Support.

Bug ID

Description

413419

FortiClient and EMS should prevent installation and upgrade to unsupported OS versions.

460508

FortiClient (Windows) does not run AV scan on USB insertion after rebooting.

472223 FortiClient (Windows) does not allow certificate selection for SSL VPN.
481003 FortiClient causes longer logon time to terminal server (Citrix) for first user.
481361 VPN before logon does not appear on Windows 10 x64 after enabling even after reboot.
483523 A black screen occurs for a few minutes after login/logoff.
495880 Non-administrator domain users can stop/pause USB media scans that EMS configuration is enforcing.
497132 When a FortiClient (Windows) endpoint is quarantined for the very first time, the pre-established HTTPS connections are not blocked.
505191 Remote Access (IPsec VPN) loses the saved username/password after upgrade.
506548 Vulnerability scan results do not display on EMS.
510748 When FortiClient 5.6 is installed on a different drive, such as E:\, and manually upgraded to 6.0 or later, the upgrade completes but FortiClient fails to launch after reboot.
512247 FortiClient (Windows) does not show full details of onnet/online status.

513213

AntiExploit Engine blocks legitimate applications.

513932

FortiClient (Windows) sends no CERT payload during IKE2 certificate authentication.

514115 FortiClient (Windows) loses the saved password after upgrading from 5.6.x and disconnecting an autoconnected IPsec VPN.

514799

Split DNS does not include news.163.com when configured for 163.com.

515473 Hiding any feature except Application Firewall causes FortiClient (Windows) to report the feature as installed and not enabled.
515937 ipsec.exe crashes in VCRUNTIME140.dll version 14.0.24210.0.
516325 Software Inventory does not show all applications installed on the user PC.
516394 FortiClient (Windows) freezes on the patching progress screen and also causes the host machine to hang up.
516544 The user cannot save a username with a certificate in SSL VPN with a profile that EMS is managing.

516841

FortiClient (Windows) Sandbox still holds files with sizes larger than 200 MB until timeout.

518103 FortiClient (Windows) fails to connect to VPN from task tray with user certification authentication (no username/password).

518691

FSSO FortiClient mobility agent and PC virtual Ethernet interfaces.

518771 FortiShield blocks Forticlient.exe from changing the registry - FA_Scheduler.
519244 fortisniff2.sys crashes on FortiClient (Windows).
520808 FortiClient fails certificate validation due to ignored intermediate CA.
521175 Windows Security Center on Windows 10 shows FortiClient RTP as enabled even if AV is disabled in FortiClient (Windows).
521198 FortiClient (Windows) deletes the IPsec VPN username and password when a profile is changed on EMS.
522022 Quick/full scan causes BSOD on Windows 7.
525417 FortiElevate.exe does not have a digital signature like the other installed files.
525536 FortiClient experiences an assertion fail when clicking the Vulnerability Scan tab.
525542 After laptop bootup or wakeup, FortiClient tries to autoconnect even though it is onnet.
525811 FortiClient (Windows) blocks access to files on mapped home drives.
525990 The FortiClient user avatar agent crashes every time that the user logs in.
526229 FortiClient AV locks Microsoft Office files and does not allow the user to save them.
526286 A complex preshared secret does not work if entered via the GUI.
527471 FortiClient (Windows) GUI displays the content of any text file.
528590 Alert when updates available is on despite the configuration of <auto_patch> and <update_action disable>.
531176 FortiClient does not honor the configured FortiManager signature update port.
531647 FortiClient (Windows) does not restore VPN autoconnect logic after manual connection.
532068 FortiClient cannot see the certificate when the certificate subject contains diacritics.
532942 VPN before logon does not work. FortiClient (Windows) syncs with the EMS profile, but the user cannot see the FortiClient VPN icon on the logon page.
532949 Enabling VPN before logon disables malware scanning.
534146 AV reported placeholder AV events to EMS.
534306 The user can replace the .exe files in the FortiClient installation folder.
534650 <allow_standard_user_use_system_cert> does not work for SSL IPv6.
534786 A prepared package with Security Fabric Agent disabled should not have logging Telemetry enabled.
535114 The user cannot select a user certificate when reconnecting to a managed SSL VPN profile.
535699 FortiClient fails to start an on-demand AV scan.

539387

VPN autodial does not work when using the domain name to register to EMS.

541225

An equal sign (=) in group names breaks SSL VPN FortiClient two-factor authentication.

541420

The user cannot log into Windows after enabling VPN before logon.

542918

Windows 8.1 does not boot after installing FortiClient (Windows).

543362

FortiClient does not register as an AV product on Windows 7 and 8.1.

543624

The user can access files before the configured response timeout.

544288

FortiClient does not scan for vulnerabilities when initiated from EMS.

544632

fortiaptfilter.sys causes BSOD.

546140

The FortiClient (Windows) GUI displays incorrectly when trying to establish VPN connection from FortiTray.

546525

FortiClient (Windows) blocks web traffic due to two FortiProxy services running at the same time.

546648

IPsec VPN autoconnect does not work after re-login.

546658

FortiClient GUI is stuck when connecting to IPSec VPN with password renewal.

547445

VPN offnet autoconnect does not work.

547636

FortiClient Sandbox and Cloud Scan turn upper-case exclusion to lower-case.

547713

FortiClient cannot connect to EMS when the user is a member of many groups with names that are 20 characters long.

547928

FortiClient Sandbox reports network error for a valid Sandbox.

548226

FortiClient can disconnect from EMS when the EMS profile requires a password to disconnect from EMS.

549103

FortiClient should handle switching between a FortiSandbox appliance configuration and FortiSandbox Cloud configuration in EMS.

549589

FortiClient (Windows) retrieves wrong FortiAnalyzer management IDs when registered to EMS with Telemetry.

Common Vulnerabilities and Exposures
Bug ID Description

433685

FortiClient (Windows) is no longer vulnerable to the following CVE reference:

  • 2019-5589

Visit https://fortiguard.com/psirt for more information.