vulnti.work

Palo Alto Networks PAN-OS Malicious DNS Packet Vulnerability

Critical Listed in CISA KEV
CVECVE-2024-3393
First seen2024-12-30 00:00 UTC
Disclosed2024-12-30 00:00 UTC
Last updated2026-07-15 04:15 UTC
Channel statuspending_review

Summary

Palo Alto Networks PAN-OS contains a vulnerability in parsing and logging malicious DNS packets in the DNS Security feature that, when exploited, allows an unauthenticated attacker to remotely reboot the firewall. Repeated attempts to trigger this condition will cause the firewall to enter maintenance mode.

In-depth triage · Auto channel

No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).

Affected products

  • Palo Alto Networks:PAN-OS

Sources

  • CISA KEV DATABASE

Original Links

Timeline

  1. kev_added CISA KEV
  2. kev_ingest CISA KEV