PAN-SA-2025-0010: Informational Bulletin: No Impact of the Marvin Attack on PAN-OS (Severity: INFORMATIONAL)
The Palo Alto Networks Product Security Assurance team has evaluated the applicability of CVEs related to the Marvin attack on PAN-OS. While we did not determine that any of these CVEs have significant impact on our PAN-OS software, some were fixed anyway out of an abundance of caution. You can also review more details about the Marvin attack (https://people.redhat.com/~hkario/marvin/) if helpful.
Affected Software
Remediation
Mitigation
Information
Event History
Frequently Asked Questions
What is the severity of PAN-SA-2025-0010?
The severity of PAN-SA-2025-0010 is classified as low, as it does not have a significant impact on PAN-OS.
How do I fix PAN-SA-2025-0010?
To address PAN-SA-2025-0010, ensure your PAN-OS is updated to the latest version provided by Palo Alto Networks.
What products are affected by PAN-SA-2025-0010?
PAN-SA-2025-0010 affects various versions of the PAN-OS software from Palo Alto Networks.
Does PAN-SA-2025-0010 require immediate action?
While PAN-SA-2025-0010 is low severity, it is advisable to stay updated with relevant patches for secure practices.
What is the main issue discussed in PAN-SA-2025-0010?
PAN-SA-2025-0010 evaluates the applicability of CVEs related to the Marvin attack on PAN-OS.