CVE-2024-3393

A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a malicious packet through the data plane of the firewall that reboots the firewall. Repeated attempts to trigger this condition will cause the firewall to enter maintenance mode.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
palo_altoCNA
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 98%
VendorProductVersion
paloaltonetworkspan-os
11.1.0 ≤
𝑥
≤ 11.1.1
paloaltonetworkspan-os
11.2.0 ≤
𝑥
< 11.2.3
paloaltonetworkspan-os
10.1.14
paloaltonetworkspan-os
10.1.14:h2
paloaltonetworkspan-os
10.1.14:h4
paloaltonetworkspan-os
10.1.14:h6
paloaltonetworkspan-os
10.2.8
paloaltonetworkspan-os
10.2.8:h10
paloaltonetworkspan-os
10.2.8:h13
paloaltonetworkspan-os
10.2.8:h15
paloaltonetworkspan-os
10.2.8:h18
paloaltonetworkspan-os
10.2.8:h3
paloaltonetworkspan-os
10.2.8:h4
paloaltonetworkspan-os
10.2.9
paloaltonetworkspan-os
10.2.9:h1
paloaltonetworkspan-os
10.2.9:h11
paloaltonetworkspan-os
10.2.9:h14
paloaltonetworkspan-os
10.2.9:h16
paloaltonetworkspan-os
10.2.9:h18
paloaltonetworkspan-os
10.2.9:h9
paloaltonetworkspan-os
10.2.10
paloaltonetworkspan-os
10.2.10:h10
paloaltonetworkspan-os
10.2.10:h2
paloaltonetworkspan-os
10.2.10:h3
paloaltonetworkspan-os
10.2.10:h4
paloaltonetworkspan-os
10.2.10:h5
paloaltonetworkspan-os
10.2.10:h7
paloaltonetworkspan-os
10.2.10:h9
paloaltonetworkspan-os
10.2.11
paloaltonetworkspan-os
10.2.11:h1
paloaltonetworkspan-os
10.2.11:h2
paloaltonetworkspan-os
10.2.11:h3
paloaltonetworkspan-os
10.2.11:h4
paloaltonetworkspan-os
10.2.11:h6
paloaltonetworkspan-os
10.2.11:h9
paloaltonetworkspan-os
10.2.12
paloaltonetworkspan-os
10.2.12:h1
paloaltonetworkspan-os
10.2.12:h2
paloaltonetworkspan-os
10.2.12:h3
paloaltonetworkspan-os
10.2.13
paloaltonetworkspan-os
10.2.13:h1
paloaltonetworkspan-os
11.1.2
paloaltonetworkspan-os
11.1.2:h1
paloaltonetworkspan-os
11.1.2:h12
paloaltonetworkspan-os
11.1.2:h14
paloaltonetworkspan-os
11.1.2:h15
paloaltonetworkspan-os
11.1.2:h3
paloaltonetworkspan-os
11.1.2:h4
paloaltonetworkspan-os
11.1.2:h9
paloaltonetworkspan-os
11.1.3
paloaltonetworkspan-os
11.1.3:h1
paloaltonetworkspan-os
11.1.3:h10
paloaltonetworkspan-os
11.1.3:h11
paloaltonetworkspan-os
11.1.3:h2
paloaltonetworkspan-os
11.1.3:h4
paloaltonetworkspan-os
11.1.3:h6
paloaltonetworkspan-os
11.1.4
paloaltonetworkspan-os
11.1.4:h1
paloaltonetworkspan-os
11.1.4:h4
paloaltonetworksprisma_access
-
𝑥
= Vulnerable software versions