CVE-2025-0114
12.03.2025, 19:15
A Denial of Service (DoS) vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software enables an unauthenticated attacker to render the service unavailable by sending a large number of specially crafted packets over a period of time. This issue affects both the GlobalProtect portal and the GlobalProtect gateway. This issue does not apply to Cloud NGFWs or Prisma Access software.Enginsight
| Vendor | Product | Version |
|---|---|---|
| paloaltonetworks | pan-os | 10.1.0 ≤ 𝑥 < 10.1.14 |
| paloaltonetworks | pan-os | 10.2.0 ≤ 𝑥 < 10.2.5 |
| paloaltonetworks | pan-os | 11.0.0 ≤ 𝑥 < 11.0.2 |
| paloaltonetworks | pan-os | 10.1.14:h1 |
| paloaltonetworks | pan-os | 10.1.14:h10 |
| paloaltonetworks | pan-os | 10.1.14:h2 |
| paloaltonetworks | pan-os | 10.1.14:h3 |
| paloaltonetworks | pan-os | 10.1.14:h4 |
| paloaltonetworks | pan-os | 10.1.14:h5 |
| paloaltonetworks | pan-os | 10.1.14:h6 |
| paloaltonetworks | pan-os | 10.1.14:h7 |
| paloaltonetworks | pan-os | 10.1.14:h8 |
| paloaltonetworks | pan-os | 10.1.14:h9 |
𝑥
= Vulnerable software versions