QID 375900

Date Published: 2021-09-29

QID 375900: Palo Alto Networks GlobalProtect App Windows Virtual Private Network (VPN) Kernel Driver Denial of Service (DoS) Vulnerability (GPC-10983)

The GlobalProtect app provides a simple way to extend the enterprise security policies out to mobile endpoints.

Affected Versions :
GlobalProtect app 5.1 versions earlier than GlobalProtect app 5.1.8
GlobalProtect app 5.2 versions earlier than GlobalProtect app

QID Detection Logic (Authenticated):
This checks for vulnerable version of PanGPS.exe file

A denial-of-service (DoS) vulnerability in Palo Alto Networks GlobalProtect app on Windows systems allows a limited Windows user to send specifically-crafted input to the GlobalProtect app that results in a Windows blue screen of death (BSOD) error..

  • CVSS V3 rated as Medium - 5.5 severity.
  • CVSS V2 rated as Medium - 4.9 severity.
  • Solution
    Refer to Palo Alto security advisory GPC-10983 for updates and patch information.
    Vendor References

    CVEs related to QID 375900

    Software Advisories
    Advisory ID Software Component Link
    GPC-10983 URL Logo security.paloaltonetworks.com/CVE-2021-3038