PT-2022-1736 · Microsoft+1 · Windows+1
Christophe Schleypen
·
Published
2022-02-09
·
Updated
2022-02-17
·
CVE-2022-0017
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Palo Alto Networks GlobalProtect app versions 5.1 through 5.1.9 on Windows
Palo Alto Networks GlobalProtect app versions 5.2 through 5.2.4 on Windows
Description
An improper link resolution before file access ('link following') vulnerability exists in the Palo Alto Networks GlobalProtect app on Windows, enabling a local attacker to disrupt system processes and potentially execute arbitrary code with SYSTEM privileges under certain circumstances.
Recommendations
For GlobalProtect app version 5.1, update to version 5.1.10 or later to resolve the issue.
For GlobalProtect app version 5.2, update to version 5.2.5 or later to resolve the issue.
Fix
Link Following
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Palo Alto Networks Globalprotect
Windows