CVE-2024-2551
14.11.2024, 10:15
A null pointer dereference vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to stop a core system service on the firewall by sending a crafted packet through the data plane that causes a denial of service (DoS) condition. Repeated attempts to trigger this condition result in the firewall entering maintenance mode.Enginsight
Vendor | Product | Version |
---|---|---|
paloaltonetworks | pan-os | 10.1.0 ≤ 𝑥 < 10.1.14 |
paloaltonetworks | pan-os | 10.2.0 ≤ 𝑥 < 10.2.4 |
paloaltonetworks | pan-os | 11.0.0 ≤ 𝑥 < 11.0.5 |
paloaltonetworks | pan-os | 10.2.4 |
paloaltonetworks | pan-os | 10.2.4:h2 |
paloaltonetworks | pan-os | 10.2.4:h3 |
paloaltonetworks | pan-os | 10.2.4:h4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration