What is the Vulnerability?Attackers are exploiting, a Denial-of-Service vulnerability (CVE-2024-3393) in the DNS Security feature of Palo Alto Networks PAN-OS. This vulnerability allows an unauthenticated attacker to send a malicious packet through the data plane of the firewall that reboots the firewall, causing it to crash and reboot, potentially leading to Denial of Service (DoS).CISA has also added CVE-2024-3393 to its Known Exploited Vulnerability (KEV) Catalog on December 12, 2024.What is the recommended Mitigation?Palo Alto Networks has released a patch for CVE-2024-3393 and noted in their advisory, that they are “aware of customers experiencing this denial of service (DoS) when their firewall blocks malicious DNS packets that trigger this issue”. For detailed guidance, visit https://security.paloaltonetworks.com/CVE-2024-3393 What FortiGuard Coverage is available?FortiGuard Labs recommends users to apply the fix provided by the vendor and follow instructions as mentioned on the vendor’s advisory. The FortiGuard Incident Response team can be engaged to help with any suspected compromise.
More Stories
libxmp-4.6.1-2.fc41
FEDORA-2025-23e4aeeb91 Packages in this update: libxmp-4.6.1-2.fc41 Update description: Latest upstream release. Changelog: Fixes: CVE-2023-45679: Attempt to free an uninitialized memory...
libxmp-4.6.1-2.fc40
FEDORA-2025-c58133e520 Packages in this update: libxmp-4.6.1-2.fc40 Update description: Latest upstream release. Changelog: Fixes: CVE-2023-45679: Attempt to free an uninitialized memory...
xmlrpc-c-1.60.04-2.fc42
FEDORA-2025-a835dd04a0 Packages in this update: xmlrpc-c-1.60.04-2.fc42 Update description: Automatic update for xmlrpc-c-1.60.04-2.fc42. Changelog * Thu Jan 2 2025 Jonathan Wright...
xmlrpc-c-1.60.04-1.fc42
FEDORA-2025-482675dee5 Packages in this update: xmlrpc-c-1.60.04-1.fc42 Update description: Automatic update for xmlrpc-c-1.60.04-1.fc42. Changelog * Thu Jan 2 2025 Jonathan Wright...
mingw-poppler-24.02.0-4.fc41
FEDORA-2025-e39bfb1baa Packages in this update: mingw-poppler-24.02.0-4.fc41 Update description: Backport fix for CVE-2024-56378. Read More
mingw-poppler-24.02.0-4.fc40
FEDORA-2025-ed039a54de Packages in this update: mingw-poppler-24.02.0-4.fc40 Update description: Backport fix for CVE-2024-56378. Read More