CVE-2024-2550
14.11.2024, 10:15
A null pointer dereference vulnerability in the GlobalProtect gateway in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to stop the GlobalProtect service on the firewall by sending a specially crafted packet that causes a denial of service (DoS) condition. Repeated attempts to trigger this condition result in the firewall entering maintenance mode.Enginsight
Vendor | Product | Version |
---|---|---|
paloaltonetworks | pan-os | 10.2.0 ≤ 𝑥 < 10.2.7 |
paloaltonetworks | pan-os | 11.0.0 ≤ 𝑥 < 11.0.6 |
paloaltonetworks | pan-os | 11.1.0 ≤ 𝑥 < 11.1.4 |
paloaltonetworks | pan-os | 10.2.7:h1 |
paloaltonetworks | pan-os | 10.2.7:h12 |
paloaltonetworks | pan-os | 10.2.7:h16 |
paloaltonetworks | pan-os | 10.2.7:h18 |
paloaltonetworks | pan-os | 10.2.7:h19 |
paloaltonetworks | pan-os | 10.2.7:h3 |
paloaltonetworks | pan-os | 10.2.7:h6 |
paloaltonetworks | pan-os | 10.2.7:h8 |
paloaltonetworks | pan-os | 10.2.8 |
paloaltonetworks | pan-os | 10.2.8:h10 |
paloaltonetworks | pan-os | 10.2.8:h13 |
paloaltonetworks | pan-os | 10.2.8:h15 |
paloaltonetworks | pan-os | 10.2.8:h3 |
paloaltonetworks | pan-os | 10.2.8:h4 |
paloaltonetworks | pan-os | 10.2.9 |
paloaltonetworks | pan-os | 10.2.9:h1 |
paloaltonetworks | pan-os | 10.2.9:h11 |
paloaltonetworks | pan-os | 10.2.9:h14 |
paloaltonetworks | pan-os | 10.2.9:h16 |
paloaltonetworks | pan-os | 10.2.9:h9 |
paloaltonetworks | pan-os | 10.2.10 |
paloaltonetworks | pan-os | 10.2.10:h2 |
paloaltonetworks | pan-os | 10.2.10:h3 |
paloaltonetworks | pan-os | 10.2.10:h4 |
paloaltonetworks | pan-os | 10.2.10:h5 |
paloaltonetworks | pan-os | 10.2.10:h7 |
paloaltonetworks | pan-os | 10.2.10:h9 |
paloaltonetworks | pan-os | 11.1.4 |
paloaltonetworks | pan-os | 11.1.4:h1 |
paloaltonetworks | pan-os | 11.1.4:h4 |
paloaltonetworks | pan-os | 11.1.4:h7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration