Fortinet black logo

Resolved Issues

Resolved Issues

The following issues have been fixed in version 6.0.15. To inquire about a particular bug, please contact Customer Service & Support.

SSL VPN

Bug ID

Description

745499

In cases where a user is establishing two tunnel connections, there is a chance that the second session knocks out the first session before it is updated, which causes a session leak.

System

Bug ID

Description

667725

FG-200D and FG-240D randomly hang or freeze with no output on the console.

714256

A softirq happened in an unprotected session read lock and caused a self-deadlock.

Upgrade

Bug ID

Description

649948

Upon upgrading to an affected 6.2 or 6.4 firmware, IKE/IPsec SAs are not synced to the primary when HA uninterruptible-upgrade is enabled. As a result, IPsec traffic from a client may be detected as having an invalid SPI until the client starts a new negotiation.

Common Vulnerabilities and Exposures

Visit https://fortiguard.com/psirt for more information.

Bug ID

CVE references

689909

FortiOS 6.0.15 is no longer vulnerable to the following CVE Reference:

  • CVE-2022-22306

695018

FortiOS 6.0.15 is no longer vulnerable to the following CVE Reference:

  • CVE-2022-22306

707951

FortiOS 6.0.15 is no longer vulnerable to the following CVE Reference:

  • CVE-2021-41032

744267

FortiOS 6.0.15 is no longer vulnerable to the following CVE References:

  • CVE-2021-3711
  • CVE-2021-3712

765177

FortiOS 6.0.15 is no longer vulnerable to the following CVE Reference:

  • CVE-2022-22299

787111

FortiOS 6.0.15 is no longer vulnerable to the following CVE Reference:

  • CVE-2021-43072

Resolved Issues

The following issues have been fixed in version 6.0.15. To inquire about a particular bug, please contact Customer Service & Support.

SSL VPN

Bug ID

Description

745499

In cases where a user is establishing two tunnel connections, there is a chance that the second session knocks out the first session before it is updated, which causes a session leak.

System

Bug ID

Description

667725

FG-200D and FG-240D randomly hang or freeze with no output on the console.

714256

A softirq happened in an unprotected session read lock and caused a self-deadlock.

Upgrade

Bug ID

Description

649948

Upon upgrading to an affected 6.2 or 6.4 firmware, IKE/IPsec SAs are not synced to the primary when HA uninterruptible-upgrade is enabled. As a result, IPsec traffic from a client may be detected as having an invalid SPI until the client starts a new negotiation.

Common Vulnerabilities and Exposures

Visit https://fortiguard.com/psirt for more information.

Bug ID

CVE references

689909

FortiOS 6.0.15 is no longer vulnerable to the following CVE Reference:

  • CVE-2022-22306

695018

FortiOS 6.0.15 is no longer vulnerable to the following CVE Reference:

  • CVE-2022-22306

707951

FortiOS 6.0.15 is no longer vulnerable to the following CVE Reference:

  • CVE-2021-41032

744267

FortiOS 6.0.15 is no longer vulnerable to the following CVE References:

  • CVE-2021-3711
  • CVE-2021-3712

765177

FortiOS 6.0.15 is no longer vulnerable to the following CVE Reference:

  • CVE-2022-22299

787111

FortiOS 6.0.15 is no longer vulnerable to the following CVE Reference:

  • CVE-2021-43072