CVE-2021-3056: PAN-OS: Memory Corruption Vulnerability in GlobalProtect Clientless VPN During SAML Authentication
A memory corruption vulnerability in Palo Alto Networks PAN-OS GlobalProtect Clientless VPN enables an authenticated attacker to execute arbitrary code with root user privileges during SAML authentication. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.20; PAN-OS 9.0 versions earlier than PAN-OS 9.0.14; PAN-OS 9.1 versions earlier than PAN-OS 9.1.9; PAN-OS 10.0 versions earlier than PAN-OS 10.0.1. Prisma Access customers with Prisma Access 2.1 Preferred firewalls are impacted by this issue.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2021-3056?
CVE-2021-3056 is a memory corruption vulnerability in Palo Alto Networks PAN-OS GlobalProtect Clientless VPN.
How does CVE-2021-3056 impact PAN-OS?
CVE-2021-3056 impacts PAN-OS 8.1 versions earlier than PAN-OS 8.1.20; PAN-OS 9.0 versions earlier than PAN-OS 9.0.14; PAN-OS 9.1 versions earlier than PAN-OS 9.1.9; and PAN-OS 10.0.0.
What is the severity of CVE-2021-3056?
CVE-2021-3056 has a severity score of 8.8, which is classified as high.
How can an attacker exploit CVE-2021-3056?
An authenticated attacker can exploit CVE-2021-3056 during SAML authentication to execute arbitrary code with root user privileges.
How to mitigate CVE-2021-3056?
To mitigate CVE-2021-3056, upgrade PAN-OS to version 8.1.20 or later, 9.0.14 or later, 9.1.9 or later, or 10.0.0.