Rewterz
Rewterz Threat Advisory – CVE-2022-27479 – Apache Superset Vulnerability
April 14, 2022
Rewterz
Rewterz Threat Advisory – CVE-2022-1280 – Linux Kernel Vulnerability
April 14, 2022

Rewterz Threat Advisory – CVE-2022-0023 – Palo Alto Networks PAN-OS Vulnerability

Severity

Medium

Analysis Summary

CVE-2022-0023

Palo Alto Networks PAN-OS is vulnerable to a denial of service, caused by improper handling of exceptional conditions in the DNS proxy feature. By sending specially crafted traffic to the firewall, a remote attacker could exploit this vulnerability to cause a denial of service.

Impact

  • System Performance Degradation
  • Denial of Service

Indicators Of Compromise

CVE

CVE-2022-0023

Affected Vendors

Palo Alto

Affected Products

  • Palo Alto Networks PAN-OS 8.1.1
  • Palo Alto Networks PAN-OS 8.1.5
  • Palo Alto Networks PAN-OS 8.1.6
  • Palo Alto Networks PAN-OS 9.0.0
  • Palo Alto Networks PAN-OS 9.0.2
  • Palo Alto Networks PAN-OS 10.1.0
  • Palo Alto Networks PAN-OS 9.0.2 h4
  • Palo Alto Networks PAN-OS 8.1.6 h2

Remediation

Refer to Palo Alto Networks Security Advisories for the patches, upgrade,s or workarounds here:

Palo Alto