A Denial of Service (DoS) vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software enables an unauthenticated attacker to render the service unavailable by sending a large number of specially crafted packets over a period of time. This issue affects both the GlobalProtect portal and the GlobalProtect gateway.
This issue does not apply to Cloud NGFWs or Prisma Access software.
| Software | From | Fixed in |
|---|---|---|
| paloaltonetworks / pan-os | 10.1.0 | 10.1.14 |
| paloaltonetworks / pan-os | 10.2.0 | 10.2.5 |
| paloaltonetworks / pan-os | 11.0.0 | 11.0.2 |
| paloaltonetworks / pan-os | 10.1.14-h1 | 10.1.14-h1.x |
| paloaltonetworks / pan-os | 10.1.14-h10 | 10.1.14-h10.x |
| paloaltonetworks / pan-os | 10.1.14-h2 | 10.1.14-h2.x |
| paloaltonetworks / pan-os | 10.1.14-h3 | 10.1.14-h3.x |
| paloaltonetworks / pan-os | 10.1.14-h4 | 10.1.14-h4.x |
| paloaltonetworks / pan-os | 10.1.14-h5 | 10.1.14-h5.x |
| paloaltonetworks / pan-os | 10.1.14-h6 | 10.1.14-h6.x |
| paloaltonetworks / pan-os | 10.1.14-h7 | 10.1.14-h7.x |
| paloaltonetworks / pan-os | 10.1.14-h8 | 10.1.14-h8.x |
| paloaltonetworks / pan-os | 10.1.14-h9 | 10.1.14-h9.x |