CVE-2024-0009: PAN-OS: Improper IP Address Verification in GlobalProtect Gateway
Published Feb 14, 2024
·Updated
An improper verification vulnerability in the GlobalProtect gateway feature of Palo Alto Networks PAN-OS software enables a malicious user with stolen credentials to establish a VPN connection from an unauthorized IP address.
Affected Software
6 affected components
Palo Alto Networks PAN-OS=11.0.0
Palo Alto Networks PAN-OS=11.0.0-h1
Palo Alto Networks PAN-OS=11.0.0-h2
Palo Alto Networks PAN-OS=11.0.0-h3
Palo Alto Networks PAN-OS=11.0.0-h4
Palo Alto Networks PAN-OS>=10.2.0<10.2.4
Remediation
Information
This issue is fixed in PAN-OS 10.2.4, PAN-OS 11.0.1, and all later PAN-OS versions.
Event History
Feb 14, 2024
CVE Published
via MITRE·05:32 PM
Data Sourced
via MITRE·05:32 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-0009?
CVE-2024-0009 is classified as a critical vulnerability due to its potential for unauthorized VPN access.
2
How do I fix CVE-2024-0009?
To fix CVE-2024-0009, update your Palo Alto Networks PAN-OS software to the latest patched version.
3
What types of systems are affected by CVE-2024-0009?
CVE-2024-0009 affects Palo Alto Networks PAN-OS 11.0.0 and versions between 10.2.0 and 10.2.4.
4
What can an attacker do with CVE-2024-0009?
An attacker exploiting CVE-2024-0009 can establish a VPN connection from an unauthorized IP address using stolen credentials.
5
Is there a workaround for CVE-2024-0009?
Currently, there is no official workaround for CVE-2024-0009, and prompt patching is recommended.