CVE-2024-5912: Cortex XDR Agent: Improper File Signature Verification Checks
An improper file signature check in Palo Alto Networks Cortex XDR agent may allow an attacker to bypass the Cortex XDR agent's executable blocking capabilities and run untrusted executables on the device. This issue can be leveraged to execute untrusted software without being detected or blocked.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Palo Alto Networks Cortex XDR agentto a version that resolves this vulnerability.Fixed in 7.9.102-CE - Upgrade
Upgrade
Palo Alto Networks Cortex XDR agentto a version that resolves this vulnerability.Fixed in 8.1.3 - Upgrade
Upgrade
Palo Alto Networks Cortex XDR agentto a version that resolves this vulnerability.Fixed in 8.2.2
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5912?
CVE-2024-5912 has been classified as a medium severity vulnerability.
How do I fix CVE-2024-5912?
To fix CVE-2024-5912, update your Palo Alto Networks Cortex XDR agent to the latest version provided by the vendor.
What is the impact of CVE-2024-5912?
The impact of CVE-2024-5912 allows an attacker to execute untrusted software on devices protected by the Cortex XDR agent.
Which software is affected by CVE-2024-5912?
The affected software for CVE-2024-5912 is the Palo Alto Networks Cortex XDR agent.
Is there a workaround for CVE-2024-5912?
There are currently no official workarounds for CVE-2024-5912 other than applying updates from Palo Alto Networks.