CVE-2019-17436: High severity palo alto networks globalprotect vulnerability
A Local Privilege Escalation vulnerability exists in GlobalProtect Agent for Linux and Mac OS X version 5.0.4 and earlier and version 4.1.12 and earlier, that can allow non-root users to overwrite root files on the file system.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-17436?
CVE-2019-17436 is a Local Privilege Escalation vulnerability in GlobalProtect Agent for Linux and Mac OS X version 5.0.4 and earlier and version 4.1.12 and earlier.
How does CVE-2019-17436 affect Paloalto Networks Globalprotect?
CVE-2019-17436 affects Paloalto Networks Globalprotect versions 5.0.4 and earlier for Linux and Mac OS X, as well as versions 4.1.12 and earlier for Linux and Mac OS X.
What is the severity of CVE-2019-17436?
CVE-2019-17436 has a severity level of 7.1 (high).
How can non-root users overwrite root files with CVE-2019-17436?
CVE-2019-17436 allows non-root users to overwrite root files on the file system.
Is there a fix for CVE-2019-17436?
At the moment, there is no fix available for CVE-2019-17436. It is recommended to update to the latest version of Paloalto Networks Globalprotect when a fix becomes available.