QID 375961

Date Published: 2021-12-06

QID 375961: Palo Alto Networks GlobalProtect App Portal gateway Buffer Overflow Vulnerability (GPC-13039)

The GlobalProtect app provides a simple way to extend the enterprise security policies out to mobile endpoints.

Affected Versions :
GlobalProtect app version 5.2 prior to version 5.2.8 on Windows
GlobalProtect app versions 5.1.X on Windows
GlobalProtect app versions 5.0.X on Windows

QID Detection Logic (Authenticated):
This checks for vulnerable version of PanGPS.exe file

A denial-of-service (DoS) vulnerability in Palo Alto Networks GlobalProtect app on Windows systems allows a limited Windows user to send specifically-crafted input to the GlobalProtect app that results in a Windows blue screen of death (BSOD) error..

  • CVSS V3 rated as Critical - 8.1 severity.
  • CVSS V2 rated as Critical - 9.3 severity.
  • Solution
    Refer to Palo Alto security advisory GPC-13039 for updates and patch information.
    Vendor References

    CVEs related to QID 375961

    Software Advisories
    Advisory ID Software Component Link
    GPC-13039 URL Logo security.paloaltonetworks.com/CVE-2021-3057