← Back

CVE-2024-2550

nvd nist
Published: Nov 14, 2024Modified: Jan 24, 2025

JSON object

Loading...
8.7
Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:C/RE:M/U:Amber
Show more
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:C/RE:M/U:AmberShow less
Source: psirt@paloaltonetworks.com (Secondary)

Description

A null pointer dereference vulnerability in the GlobalProtect gateway in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to stop the GlobalProtect service on the firewall by sending a specially crafted packet that causes a denial of service (DoS) condition. Repeated attempts to trigger this condition result in the firewall entering maintenance mode.

Affected (34)

Pan Os
Configuration A
34 vulnerable
Vulnerable SoftwareAffected Versions
Paloaltonetworks
From 10.2.0 to 10.2.7
From 11.0.0 to 11.0.6
From 11.1.0 to 11.1.4
Version 10.2.10
Version 10.2.10 h2
Version 10.2.10 h3
Version 10.2.10 h4
Version 10.2.10 h5
Version 10.2.10 h7
Version 10.2.10 h9
Version 10.2.7 h12
Version 10.2.7 h16
Version 10.2.7 h18
Version 10.2.7 h19
Version 10.2.7 h1
Version 10.2.7 h3
Version 10.2.7 h6
Version 10.2.7 h8
Version 10.2.8
Version 10.2.8 h10
Version 10.2.8 h13
Version 10.2.8 h15
Version 10.2.8 h3
Version 10.2.8 h4
Version 10.2.9
Version 10.2.9 h11
Version 10.2.9 h14
Version 10.2.9 h16
Version 10.2.9 h1
Version 10.2.9 h9
Version 11.1.4
Version 11.1.4 h1
Version 11.1.4 h4
Version 11.1.4 h7

References (1)

Source: psirt@paloaltonetworks.com
Vendor Advisory

Timeline

No history available yet.