CVE-2026-0250: GlobalProtect App: Buffer Overflow Vulnerability during connection to Portal or Gateway
A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a man in the middle attacker to disrupt system processes and potentially execute arbitrary code with SYSTEM privileges. This vulnerability is triggered during the processing of requests and responses exchanged between Portal and Gateway.
The GlobalProtect app on iOS is not affected.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.3-h9Fixed in 6.2.8-h10 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.14Fixed in 6.3.4 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.3-h3Fixed in 6.0.12 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.13 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.15 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.3-h10 - Upgrade
Upgrade
Palo Alto Networks GlobalProtect Appto a version that resolves this vulnerability.Fixed in 6.0.14 - Upgrade
Upgrade
Palo Alto Networks GlobalProtect Appto a version that resolves this vulnerability.Fixed in 6.1.14 - Upgrade
Upgrade
Palo Alto Networks GlobalProtect Appto a version that resolves this vulnerability.Fixed in 6.3.4 - Upgrade
Upgrade
Palo Alto Networks GlobalProtect Appto a version that resolves this vulnerability.Fixed in 6.0.11 - Upgrade
Upgrade
Palo Alto Networks GlobalProtect Appto a version that resolves this vulnerability.Fixed in 6.0.13 - Upgrade
Upgrade
Palo Alto Networks GlobalProtect UWP Appto a version that resolves this vulnerability.Fixed in 6.3.3-h10
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0250?
CVE-2026-0250 has been categorized with a medium severity level.
How do I fix CVE-2026-0250?
To fix CVE-2026-0250, ensure you update the Palo Alto Networks GlobalProtect app to the latest version released by the vendor.
What type of vulnerability is CVE-2026-0250?
CVE-2026-0250 is identified as a buffer overflow vulnerability.
What can attackers do with CVE-2026-0250?
Attackers can potentially disrupt system processes and execute arbitrary code through a man-in-the-middle attack exploiting CVE-2026-0250.
Which application is affected by CVE-2026-0250?
CVE-2026-0250 affects the Palo Alto Networks GlobalProtect app.