vulnerability

Palo Alto Networks PAN-OS: CVE-2022-0023: PAN-OS: Denial-of-Service (DoS) Vulnerability in DNS Proxy

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Apr 13, 2022
Added
Jan 7, 2025
Modified
Jul 3, 2025

Description

An improper handling of exceptional conditions vulnerability exists in the DNS proxy feature of Palo Alto Networks PAN-OS software that enables a meddler-in-the-middle (MITM) to send specifically crafted traffic to the firewall that causes the service to restart unexpectedly. Repeated attempts to send this request result in denial-of-service to all PAN-OS services by restarting the device in maintenance mode.

Solution

palo-alto-networks-pan-os-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.