Fortinet white logo
Fortinet white logo

Resolved Issues

Resolved Issues

The resolved issues listed below do not list every bug that has been corrected with this release. For inquires about a particular bug, please contact Fortinet Customer Service & Support.

Antispam/Antivirus

Bug ID

Description

782699

Email scanning continues after the final action has been taken.

782367

DLP condition "body is empty" should be applied to the email that looks empty (with invisible characters).

783166

SPF check fails for MS365 API mail.

770190

DKIM checking may not work properly in some cases.

773494

Manipulated MIME headers may bypass AV scan.

778938

In some cases, zip files cannot be decrypted.

772298

After upgrading from v7.0.1 to v7.0.2, DLP scan does not work properly.

771118

Sender IP address is added to authentication reputation blocklist after delivering five to 10 email messages.

770566

Malicious URIs in text format may bypass FortiGuard URL filter check.

770445

DLP scan does not detect words in the headers and footers of Microsoft Word documents.

770841

URL exemption for domain names does not work properly with "aggressive" URI checking.

764802

Dictionary profile was triggered with no matching pattern.

785327

DKIM check fails incorrectly.

794305

In some cases, the content filter cannot detect HTML attachments.

789214

DKIM check is not performed if the sender is in the safelist.

Mail delivery

Bug ID

Description

773010

Successful bounce verification scan does not remove the tag.

774758

DSNs are sent using the mail routing profile of the original email.

732598

In some cases, email delivery may be delayed after Microsoft 365 real-time scanning.

System

Bug ID

Description

771056

After upgrading from v6.4 to v7.0, FortiGuard antispam service is displayed as not reachable although the service is disabled.

783656

DANE check 2.x.x should ignore "Unable to get CRL".

672299

The dnscached process may cache incorrect query results under heavy traffic.

773356

Missing deployment package for VMware ESXi 7.02.

771913

Domain disclaimers do not work properly.

768275

IP pools in ACL rules should have higher priority over IP pools in policies.

772318

Push update does not work properly.

769748

System encounters reboot loop with subscription license.

770916

Unable to configure distinguished name (DN) with more than 127 characters.

765128

In server mode config-only HA, multiple calendar event reminders are sent to users.

764216

When ping access is disabled on an interface, ping6 from FortiMail cannot be sent.

768328

Subdomain-based admins with read/write access privilege are not able to view domain based settings.

786272

In some cases, disclaimers are not added properly although the logs show otherwise.

788629

Associated domains should use the primary domain's Bayesian database.

782368

High CPU usage after upgrading from v6.4.5 to v6.4.6.

Log and Report

Bug ID

Description

761956

When adding a safe/block list via webmail, the entries are added successfully but the event is not logged.

Admin GUI and Webmail

Bug ID

Description

781054

History log search by message ID does not work.

777084

Sender Reputation search filter does not work with relationship set to "or".

764729

In server mode, the "Failed to open mailbox" error message may display when a webmail user tries to open a mail folder.

786646

Unable to create safelists and blocklists.

786675

No system event logs are generated when creating/deleting a DKIM key pair.

Common vulnerabilites and exposures

Visit https://fortiguard.com/psirt for more information.

Bug ID

Description

776309

CWE-121: Stack-based Buffer Overflow

765178

CWE-134: Use of Externally-Controlled Format String

686309

CWE-329: Not Using a Random IV with CBC Mode

771106

CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

Resolved Issues

Resolved Issues

The resolved issues listed below do not list every bug that has been corrected with this release. For inquires about a particular bug, please contact Fortinet Customer Service & Support.

Antispam/Antivirus

Bug ID

Description

782699

Email scanning continues after the final action has been taken.

782367

DLP condition "body is empty" should be applied to the email that looks empty (with invisible characters).

783166

SPF check fails for MS365 API mail.

770190

DKIM checking may not work properly in some cases.

773494

Manipulated MIME headers may bypass AV scan.

778938

In some cases, zip files cannot be decrypted.

772298

After upgrading from v7.0.1 to v7.0.2, DLP scan does not work properly.

771118

Sender IP address is added to authentication reputation blocklist after delivering five to 10 email messages.

770566

Malicious URIs in text format may bypass FortiGuard URL filter check.

770445

DLP scan does not detect words in the headers and footers of Microsoft Word documents.

770841

URL exemption for domain names does not work properly with "aggressive" URI checking.

764802

Dictionary profile was triggered with no matching pattern.

785327

DKIM check fails incorrectly.

794305

In some cases, the content filter cannot detect HTML attachments.

789214

DKIM check is not performed if the sender is in the safelist.

Mail delivery

Bug ID

Description

773010

Successful bounce verification scan does not remove the tag.

774758

DSNs are sent using the mail routing profile of the original email.

732598

In some cases, email delivery may be delayed after Microsoft 365 real-time scanning.

System

Bug ID

Description

771056

After upgrading from v6.4 to v7.0, FortiGuard antispam service is displayed as not reachable although the service is disabled.

783656

DANE check 2.x.x should ignore "Unable to get CRL".

672299

The dnscached process may cache incorrect query results under heavy traffic.

773356

Missing deployment package for VMware ESXi 7.02.

771913

Domain disclaimers do not work properly.

768275

IP pools in ACL rules should have higher priority over IP pools in policies.

772318

Push update does not work properly.

769748

System encounters reboot loop with subscription license.

770916

Unable to configure distinguished name (DN) with more than 127 characters.

765128

In server mode config-only HA, multiple calendar event reminders are sent to users.

764216

When ping access is disabled on an interface, ping6 from FortiMail cannot be sent.

768328

Subdomain-based admins with read/write access privilege are not able to view domain based settings.

786272

In some cases, disclaimers are not added properly although the logs show otherwise.

788629

Associated domains should use the primary domain's Bayesian database.

782368

High CPU usage after upgrading from v6.4.5 to v6.4.6.

Log and Report

Bug ID

Description

761956

When adding a safe/block list via webmail, the entries are added successfully but the event is not logged.

Admin GUI and Webmail

Bug ID

Description

781054

History log search by message ID does not work.

777084

Sender Reputation search filter does not work with relationship set to "or".

764729

In server mode, the "Failed to open mailbox" error message may display when a webmail user tries to open a mail folder.

786646

Unable to create safelists and blocklists.

786675

No system event logs are generated when creating/deleting a DKIM key pair.

Common vulnerabilites and exposures

Visit https://fortiguard.com/psirt for more information.

Bug ID

Description

776309

CWE-121: Stack-based Buffer Overflow

765178

CWE-134: Use of Externally-Controlled Format String

686309

CWE-329: Not Using a Random IV with CBC Mode

771106

CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')