Fortinet white logo
Fortinet white logo

Resolved issues

Resolved issues

The following issues have been fixed in FortiProxy 7.0.21. For inquiries about a particular bug, please contact Customer Service & Support.

Bug ID

Description

1074460 Crash due to buffer overflow issues related to corrupted traffic log files.
1117526 list_entry should be typesafe.
1117013 wad_hash_cache timeout issue.
1112600 The wad_ftp_session_task_start does not initiate while establishing the data connection.
924740 Improve WAD trace log precision of process-id-by-src filter.
1103476 License leak.

1126862

Traffic is passed by transparent deny policy when log-http-transaction is enabled.

1126749

Duplicate session ID in traffic logs across different connections.

1126862

Traffic is passed by transparent deny policy when log-http-transaction is enabled.

1018780, 1023127

WAD crash on wad_http_avscan_comfort.

1144421

ICAP crash.

1092529, 1095093, 1102694

"utmref" and "utmaction" fields are missing in forward traffic log and long-tcp sessions are missing in http-transaction traffic log.

1102796

Passive proxy member send LDAP requests to the LDAP servers.

Common vulnerabilities and exposures

FortiProxy 7.0.21 is no longer vulnerable to the following CVE reference. Visit https://fortiguard.com/psirt for more information.

Bug ID

CVE reference

1121042

CVE-2024-52965

Resolved issues

Resolved issues

The following issues have been fixed in FortiProxy 7.0.21. For inquiries about a particular bug, please contact Customer Service & Support.

Bug ID

Description

1074460 Crash due to buffer overflow issues related to corrupted traffic log files.
1117526 list_entry should be typesafe.
1117013 wad_hash_cache timeout issue.
1112600 The wad_ftp_session_task_start does not initiate while establishing the data connection.
924740 Improve WAD trace log precision of process-id-by-src filter.
1103476 License leak.

1126862

Traffic is passed by transparent deny policy when log-http-transaction is enabled.

1126749

Duplicate session ID in traffic logs across different connections.

1126862

Traffic is passed by transparent deny policy when log-http-transaction is enabled.

1018780, 1023127

WAD crash on wad_http_avscan_comfort.

1144421

ICAP crash.

1092529, 1095093, 1102694

"utmref" and "utmaction" fields are missing in forward traffic log and long-tcp sessions are missing in http-transaction traffic log.

1102796

Passive proxy member send LDAP requests to the LDAP servers.

Common vulnerabilities and exposures

FortiProxy 7.0.21 is no longer vulnerable to the following CVE reference. Visit https://fortiguard.com/psirt for more information.

Bug ID

CVE reference

1121042

CVE-2024-52965