CVE-2024-3384

high

Description

A vulnerability in Palo Alto Networks PAN-OS software enables a remote attacker to reboot PAN-OS firewalls when receiving Windows New Technology LAN Manager (NTLM) packets from Windows servers. Repeated attacks eventually cause the firewall to enter maintenance mode, which requires manual intervention to bring the firewall back online.

References

https://www.securityweek.com/palo-alto-networks-patches-vulnerabilities-allowing-firewall-disruption/

https://security.paloaltonetworks.com/CVE-2024-3384

Details

Source: Mitre, NVD

Published: 2024-04-10

Updated: 2024-04-10

Risk Information

CVSS v2

Base Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

Severity: High

CVSS v3

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Severity: High