Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Palo Alto Networks patches serious vulnerabilities
iTnews (AUS) ^ | Feb 26 2016 5:56AM (AUS) | Juha Saarinen

Posted on 02/25/2016 7:07:26 PM PST by Utilizer

Security vendor Palo Alto Networks has issued a security advisory covering four vulnerabilities affecting its PAN-OS operating system and is advising users to patch immediately.

Two vulnerabilities in particular appear to be particularly dangerous, according to Johannes Ullrich of security vendor SANS Institute.

Rated as "critical" by Palo Alto Networks, a buffer overflow in the PAN-OS GlobalProtect SSL VPN web interface could be abused to bypass restrictions to limit traffic to trusted IP addresses only.

"An attacker with network access to the vulnerable GlobalProtect portal may be able to perform a denial-of-service (DoS) attack on the device, and may be able to perform remote code execution on the affected device," Palo Alto Networks said.

Users can apply emergency content update 563, which contains intrusion protection system signature #38902 to their firewall rules, as a workaround to protect traffic to the GlobalProtect portal, the vendor said.

The vulnerability was discovered by Felix Wilhelm of ERNW Research.

A second vulnerability marked as "high" is found in the API for the PAN-OS management web interface and could allow attackers to execute arbitrary commands, Ullrich said.

(Excerpt) Read more at itnews.com.au ...


TOPICS: Business/Economy; Computers/Internet
KEYWORDS: malware; networking; security
Potential DDOS threat...
1 posted on 02/25/2016 7:07:26 PM PST by Utilizer
[ Post Reply | Private Reply | View Replies]

To: Utilizer

Wonderful. I still like me new Palo alto


2 posted on 02/25/2016 7:09:55 PM PST by driftdiver (I could eat it raw, but why do that when I have a fire.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Utilizer

Ouch. Not good for my employer.


3 posted on 02/25/2016 7:13:59 PM PST by ConservativeMind ("Humane" = "Don't pen up pets or eat meat, but allow infanticide, abortion, and euthanasia.")
[ Post Reply | Private Reply | To 1 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson