GlobalProtect on MacOS: Local denial-of-service (DoS) vulnerability.
CVE-2020-1976

4.7MEDIUM

Key Information:

Vendor
CVE Published:
12 February 2020

Summary

A denial-of-service (DoS) vulnerability in Palo Alto Networks GlobalProtect software running on Mac OS allows authenticated local users to cause the Mac OS kernel to hang or crash. This issue affects GlobalProtect 5.0.5 and earlier versions of GlobalProtect 5.0 on Mac OS.

Affected Version(s)

GlobalProtect Mac OS 5.0 <= 5.0.5

References

CVSS V3.1

Score:
4.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

This issue was discovered during a security test performed in collaboration with IOActive.
.