PAN-OS: Firewall Denial of Service (DoS) in DNS Security Using a Specially Crafted Packet
Vulnerability Description
A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a malicious packet through the data plane of the firewall that reboots the firewall. Repeated attempts to trigger this condition will cause the firewall to enter maintenance mode.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-3393
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Palo Alto Networks thanks the CERT-EE team for their extra effort in providing invaluable forensic and analytic assistance.
More from Palo Alto Networks
View All →Affected Vendor
Palo Alto Networks
View all reports →