CVE-2020-1995Medium

CVE-2020-1995 PAN-OS: Management server rasmgr denial of service

Published
May 13, 2020
Last Modified
May 13, 2020

🔗 CVE IDs covered (1)

📋 Description

A NULL pointer dereference vulnerability in Palo Alto Networks PAN-OS allows an authenticated administrator to send a request that causes the rasmgr daemon to crash. Repeated attempts to send this request result in denial of service to all PAN-OS services by restarting the device and putting it into maintenance mode.

This issue affects: PAN-OS 9.1 versions earlier than 9.1.2.

🎯 Affected products1

  • PAN-OS

✅ Remediation

This issue is fixed in PAN-OS 9.1.2 and all later PAN-OS versions.

🔗 References (1)