First published: Wed Aug 14 2024(Updated: )
A privilege escalation (PE) vulnerability in the Palo Alto Networks GlobalProtect app on Windows devices enables a local user to execute programs with elevated privileges.
Credit: psirt@paloaltonetworks.com
Affected Software | Affected Version | How to fix |
---|---|---|
Paloaltonetworks Globalprotect | >=5.1.0<=5.1.9 | |
Paloaltonetworks Globalprotect | >=6.0.0<=6.0.6 | |
Paloaltonetworks Globalprotect | >=6.1.0<6.1.5 | |
Paloaltonetworks Globalprotect | >=6.2.0<6.2.4 | |
Paloaltonetworks Globalprotect | =6.3.0 |
This issue is fixed in GlobalProtect app 5.1.x (ETA: December 2024), GlobalProtect app 6.0.x (ETA: November 2024), GlobalProtect app 6.1.5, GlobalProtect app 6.2.4, GlobalProtect app 6.3.1 (ETA: end of August), and all later GlobalProtect app versions on Windows.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.