Back to search
CVE-2024-3393
Published: Dec 27, 2024
Modified: Oct 21, 2025
PUBLISHED
Description
A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a malicious packet through the data plane of the firewall that reboots the firewall. Repeated attempts to trigger this condition will cause the firewall to enter maintenance mode.
| Vendor | Product | Versions |
|---|---|---|
Palo Alto Networks | Cloud NGFW | unaffected All |
Palo Alto Networks | PAN-OS | affected 11.2.0 - < 11.2.3affected 11.1.0 - < 11.1.2-h16affected 10.2.8 - < 10.2.8-h19affected 10.1.14 - < 10.1.14-h8 |
Palo Alto Networks | PAN-OS | unaffected 10.2.0 - < 10.2.8affected 11.2.0 - < 11.2.3 |
Weaknesses (CWE)
References
https://security.paloaltonetworks.com/CVE-2024-3393
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now