CVE-2024-3393

Published Dec 27, 2024

Last updated a month ago

Overview

Description
A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a malicious packet through the data plane of the firewall that reboots the firewall. Repeated attempts to trigger this condition will cause the firewall to enter maintenance mode.
Source
psirt@paloaltonetworks.com
NVD status
Analyzed

Risk scores

CVSS 4.0

Type
Secondary
Base score
8.7
Impact score
-
Exploitability score
-
Vector string
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:C/RE:M/U:Amber
Severity
HIGH

CVSS 3.1

Type
Primary
Base score
7.5
Impact score
3.6
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Severity
HIGH

Known exploits

Data from CISA

Vulnerability name
Palo Alto Networks PAN-OS Malicious DNS Packet Vulnerability
Exploit added on
Dec 30, 2024
Exploit action due
Jan 20, 2025
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Weaknesses

psirt@paloaltonetworks.com
CWE-754
nvd@nist.gov
CWE-754

Social media

Hype score
Not currently trending
  1. Just survived another reboot thanks to CVE-2024-3393! Can't say the same for Palo Alto Networks' PAN-OS. Fix slated for Jan 2025, let's see who gets disrupted first. @CyberSecGuru, fancy a punt? #CyberSecurity #PaloAlto #PatchOrPerish https://t.co/cBOPNRjWOO

    @LimitedViewX

    18 Feb 2025

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. *NCA-01.011425 – NCERT Advisory – Palo Alto PANOS DNS Security Vulnerability (CVE-2024-3393)* @PKCERT #Cybersecurity https://t.co/ctqn13LFeg

    @Shabnam_145

    27 Jan 2025

    38 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  3. CISA KEV 警告 24/12/30:Palo Alto PAN-OS の脆弱性 CVE-2024-3393 を登録 https://t.co/ATYAYq1BoT Palo Alto PAN-OS の脆弱性 CVE-2024-3393 ですが、第一報は 2024/12/26 の「Palo Alto PAN-OS の脆弱性 CVE-2024-3393 が FIX:積極的な DoS 攻撃を観測」となっています。その時点から、DoS… https://t.co/LJRDDIVLlu

    @iototsecnews

    13 Jan 2025

    137 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. Critical #PanOS vulnerability, CVE-2024-3393! Protect your systems from potential disruptions. Learn more in this #CybersecurityThreatAdvisory: https://t.co/IbXAhhnIJI

    @SmarterMSP

    6 Jan 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 🚨 Emerging Threat Alert: A vulnerability (CVE-2024-3393) in Palo Alto PAN-OS could allow attackers to bypass security measures and gain unauthorized access to sensitive data. This puts countless organizations at risk. Get the details 👉 https://t.co/m4Rc1Uhnh6 #CyberThreat htt

    @CyCognito

    6 Jan 2025

    61 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. CVE-2024-3393 alert 🚨 Palo Alto Networks: PAN-OS Malicious DNS Packet Vulnerability Both of the following must be true for PAN-OS to be affected: - A DNS Security License or an Advanced DNS Security License must be applied, - DNS Security logging must be enabled. #PaloAlto #CVE

    @Patrowl_io

    6 Jan 2025

    75 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  7. #exploit 1. CVE-2024-3393: Palo Alto Networks PAN-OS Malicious DNS Packet Vulnerability (DoS) - https://t.co/EoSn0IpVU9 2. CVE-2024-12908: Delinea Protocol Handler - RCE via Update Process - https://t.co/1Vgu4OZ84E 3. CVE-2024-53677: Unrestricted Upload of File with Dangerous

    @ksg93rd

    6 Jan 2025

    456 Impressions

    1 Retweet

    6 Likes

    2 Bookmarks

    0 Replies

    0 Quotes

  8. 📝年末年始のサイバーセキュリティ関連ニュース <脆弱性> 【Palo Alto PAN-OSのDoS脆弱性、ファイアウォール無効化のために悪用される:CVE-2024-3393】 https://t.co/2Mx9eRkMjA ・Palo Alto… https://t.co/BsP8EJ9RME

    @MachinaRecord

    6 Jan 2025

    146 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  9. CISA が既知の悪用された脆弱性をカタログに追加 CISA Adds One Known Exploited Vulnerability to Catalog #CISA (Dec 30) - CVE-2024-3393 Palo Alto Networks PAN-OS 不正な DNS パケットの脆弱性 https://t.co/EWHKJPEY9p

    @foxbook

    5 Jan 2025

    302 Impressions

    0 Retweets

    3 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. CVE-2024-12356 is getting exploited #inthewild. Find out more at https://t.co/3uT3uYC4yM CVE-2021-44207 is getting exploited #inthewild. Find out more at https://t.co/rBRpk3iXZi CVE-2024-3393 is getting exploited #inthewild. Find out more at https://t.co/E9g2BcF5E3

    @inthewildio

    4 Jan 2025

    89 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. 🚨 Upozorňujeme na vysoce závažnou a aktivně zneužívanou zranitelnost CVE-2024-3393 v produktu PAN-OS. Neautentizovanému vzdálenému útočníkovi je pomocí specificky vytvořených DNS paketů umožněno restartovat firewall oběti a jejich opakovaným zasíláním na něj vykonat DoS útok.…

    @GOVCERT_CZ

    3 Jan 2025

    487 Impressions

    2 Retweets

    9 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. Critical Update: PAN-OS DoS Vulnerability (CVE-2024-3393) Palo Alto Networks has identified a serious DoS vulnerability affecting PAN-OS 10.x & 11.x and Prisma Access. Read Full Blog Here: https://t.co/swd9vURbrk #cybersecurity #paloaltonetworks #vulnerabilitymanagement ht

    @ForeSiet

    2 Jan 2025

    40 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  13. Palo Alto Networks is warning that hackers are exploiting the CVE-2024-3393 denial of service vulnerability to disable firewall protections by forcing it to reboot. https://t.co/wYvJIdQgp1 #PaloAlto #firewall #vulnerability #DOS #cybersecuritynews #threatresq

    @ThreatResq

    2 Jan 2025

    29 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  14. Critical Palo Alto Networks PAN-OS vulnerability (CVE-2024-3393) causing DoS attacks. Update your PAN-OS to the latest version immediately! #PaloAltoNetworks #Cybersecurity #Vulnerability https://t.co/AKrAsIKbVx

    @TLDRStories

    1 Jan 2025

    40 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  15. JALやみずほの障害ってPaloの脆弱性 CVE-2024-3393 だったりするのかな

    @riscascape

    31 Dec 2024

    45 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. 🚨Alert🚨 CVE-2024-3393 : Critical DoS Vulnerability Found in Palo Alto Networks PAN-OS 📊 8.5k+ Services are found on https://t.co/ysWb28BTvF yearly. 🔗Hunter Link: https://t.co/aNW5QSqyp2 👇Query HUNTER:/product.name="Palo Alto" 📰Refer:https://t.co/dTiElTHZ0z… https://t.co/r1Q

    @HunterMapping

    31 Dec 2024

    1730 Impressions

    12 Retweets

    34 Likes

    7 Bookmarks

    2 Replies

    0 Quotes

  17. 米国サイバーセキュリティ・社会基盤安全保障庁(CISA)が既知の悪用された脆弱性カタログに、パロアルトネットワークス社PAN-OSのDoS、CVE-2024-3393を追加。対処期限は通常の2025/1/20。ランサムウェアによる悪用は不知。 https://t.co/9TzOWmuO5R

    @__kokumoto

    31 Dec 2024

    1423 Impressions

    2 Retweets

    17 Likes

    4 Bookmarks

    1 Reply

    1 Quote

  18. CISA adds PaloAlto CVE-2024-3393 to its KEV Catalog #CISAKEV #PaloAlto #CVE-2024-3393 https://t.co/yyv16UMPgi

    @pravin_karthik

    31 Dec 2024

    69 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  19. Latest Known Exploited Vulnerabilities (#KEV) : #CVE-2024-3393 Palo Alto Networks #PAN-OS Malformed DNS Packet Vulnerability https://t.co/meyF4l2Dqd

    @ScyScan

    30 Dec 2024

    84 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  20. 🚨 @CISACyber Alert: New vulnerability added to KEV Catalog! 🛡️ 📛 CVE-2024-3393: PAN-OS: Firewall Denial of Service (DoS) in DNS Security Using a Specially Crafted Packet 🔴 CVSS: 8.7 🛠️CWE: CWE-754 Improper Check for Unusual or Exceptional Conditions 📈Impact: Denial-of-Servi

    @gothburz

    30 Dec 2024

    114 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  21. #ITSecurity Palo Alto Networks has patched CVE-2024-3393, a vulnerability that has been exploited for DoS attacks against the company’s firewalls. https://t.co/PTD3v5Ib99

    @seaarepea

    30 Dec 2024

    32 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  22. 🚨 Critical DoS Vulnerability in Palo Alto Networks PAN-#OS #Software (#CVE-2024-3393) https://t.co/eB7KFHDyjH

    @UndercodeNews

    30 Dec 2024

    60 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  23. Today @CISACyber 🛡️ added a #PaloAltoNetworks PAN-OS malformed DNS packet vulnerability, CVE-2024-3393, to their Known Exploited Vulnerabilities Catalog. Visit https://t.co/hoGUX5BhJ4 & apply mitigations to protect your org from cyberattacks. #Cybersecurity #InfoSec

    @TriconUmt

    30 Dec 2024

    81 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  24. 🛡️ We added a #PaloAltoNetworks PAN-OS malformed DNS packet vulnerability, CVE-2024-3393, to our Known Exploited Vulnerabilities Catalog. Visit https://t.co/myxOwap1Tf & apply mitigations to protect your org from cyberattacks. #Cybersecurity #InfoSec https://t.co/U8CnF4ABv1

    @CISACyber

    30 Dec 2024

    8864 Impressions

    49 Retweets

    68 Likes

    11 Bookmarks

    7 Replies

    5 Quotes

  25. 🔴 سواستفاده هکر‌ها از نقص DoS برای غیرفعال کردن فایروال‌های Palo Alto Networks مجموعه Palo Alto Networks هشدار داد که هکر‌ها از آسیب‌پذیری Denial of Service با شناسه CVE-2024-3393 برای غیرفعال کردن محافظت‌... #Cybersecurity #Cyber_Attack #DoS #Firewall https://t.co/96PMYbYyA7

    @Takianco

    30 Dec 2024

    90 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  26. به تازگی آسیب پذیری جدیدی با کد شناسایی CVE-2024-3393 برای محصول Palo Alto Networks منتشر شده است. این آسیب پذیری باعث اکسپلویت شدن فایروال با تغییر دادن پکت و اجرای نوعی حمله DOS می شود. این حمله با ارسال یک پکت مخرب DNS به سمت فایروال اجرا می شود . https://t.co/Poz3aKYxT1 https

    @AmirHossein_sec

    29 Dec 2024

    58 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  27. Top 5 Trending CVEs: 1 - CVE-2024-12856 2 - CVE-2024-9047 3 - CVE-2024-3393 4 - CVE-2024-49112 5 - CVE-2024-12356 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W

    @CVEShield

    29 Dec 2024

    8 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  28. ℹ️ Vulnérabilité critique dans les produits Palo Alto Networks : attaque à distance possible. Détails sur la CVE-2024-3393 activement exploitée. Analyse indispensable pour les Analystes Sécurité. #Cybersécurité #AlerteSécurité #ExploitZeroDay 👉 https://t.co/lieGEAcZo0

    @CyberAlertFr

    28 Dec 2024

    49 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  29. Hackers exploit DoS flaw to disable Palo Alto Networks firewalls Hackers are actively exploiting a vulnerability (CVE-2024-3393) in Palo Alto Networks’ firewalls, forcing them to reboot and disable protections. 🔍What you need to know: - The bug targets the DNS Security… https

    @ElusivePrivacy

    28 Dec 2024

    83 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  30. Hackers exploit DoS flaw to disable Palo Alto Networks firewalls Hackers are actively exploiting a vulnerability (CVE-2024-3393) in Palo Alto Networks’ firewalls, forcing them to reboot and disable protections. 🔍What you need to know: - The bug targets the DNS Security… https

    @ElusivePrivacy

    28 Dec 2024

    3 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  31. Si tienes un Palo Alto, parchéalo ya. Han emitido un aviso crítico CVE-2024-3393: vulnerabilidad severidad alta (CVSS 8.7) que afecta a seguridad DNS de #PAN-OS. Si es explotada, puede hacer que los firewall se reinicien sin parar entrando en modo DDoS. #ciberseguridad https://t.

    @pabloperezsjose

    28 Dec 2024

    108 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    1 Reply

    0 Quotes

  32. Palo Alto Networks, CVE-2024-3393 Zafiyetine Karşı Açıklama Yaptı https://t.co/vZA4TtcPf2

    @cozumpark

    28 Dec 2024

    349 Impressions

    0 Retweets

    1 Like

    1 Bookmark

    0 Replies

    0 Quotes

  33. CVE-2024-3393: I Firewall Palo Alto Networks sotto attacco con un semplice pacchetto DNS! - https://t.co/i32umVyJsQ

    @Cysafenews

    28 Dec 2024

    4 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  34. חברת פאלו אלטו מדווחת כי תוקפים מנצלים את החולשה CVE-2024-3393 בשביל לגרום ל-FW לבצע ריסטרט ולהיכנס למצב תחזוקה. הדיווח המלא - כאן #חולשות https://t.co/f8d4FOFSbP

    @CyberIL

    28 Dec 2024

    124 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  35. Palo Alto Networks исправила DoS-уязвимость в PAN-OS, и свежий баг уже атакуют хакеры Компания сообщает, что хакеры уже эксплуатируют свежую DoS-уязвимость CVE-2024-3393, чтобы отключать защиту брандмауэров, заставляя их перезагружаться. https://t.co/yBzLznXU2A

    @XakepRU

    28 Dec 2024

    410 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  36. CVE-2024-3393 PAN-OS: Firewall Denial of Service (DoS) in DNS Security Using a Specially Crafted Packet

    @nanhchi2311

    28 Dec 2024

    2 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  37. About Denial of Service - #PANOS (CVE-2024-3393) vulnerability. 👾 #PaloAlto has already detected attacks that exploit this vulnerability. There are no public exploits yet. #DNS #NGFW #CyberOK ➡️ https://t.co/Gf83Mx9Ghh https://t.co/wpoiimPgIf

    @leonov_av

    28 Dec 2024

    71 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  38. A critical DoS vulnerability (CVE-2024-3393) in PAN-OS can affect firewalls by allowing attackers to send malicious packets, causing reboots. Update immediately! ⚠️ #PANOSFlaw #FirewallSecurity #USA #CybersecurityNews link: https://t.co/2ub8TU2ntA https://t.co/oWnj8Z5And

    @TweetThreatNews

    28 Dec 2024

    45 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  39. سوء استفاده هکرها از آسیب پذیری CVE-2024-3393 برای غیرفعال سازی فایروال‌های Palo Alto #CVE_2024_3393 #Denial_of_service #Palo_Alto https://t.co/h1AxGIUNuu

    @vulnerbyte

    28 Dec 2024

    42 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  40. 🚨 Critical Vulnerability CVE-2024-3393 in PAN-OS Now Actively Exploited 🚨 Palo Alto Networks has identified CVE-2024-3393, a critical vulnerability in the DNS Security feature of PAN-OS, which is being exploited in the wild. This vulnerability has a CVSS score of 8.7,… https:/

    @GHak2learn27752

    28 Dec 2024

    205 Impressions

    0 Retweets

    3 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  41. Palo Alto Networks: Alerta sobre la vulnerabilidad CVE-2024-3393 - Underc0de Blog https://t.co/7MC33jwEAH https://t.co/GEwxV2oted

    @nethome_mx

    27 Dec 2024

    48 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  42. قراصنة يستغلون ثغرة DoS لتعطيل جدران حماية بالو ألتو نتوركس تحذر شركة بالو ألتو نتوركس من استغلال القراصنة لثغرة CVE-2024-3393 في تعطيل حماية جدار الحماية من خلال إجباره على إعادة التشغيل. [...] https://t.co/FCXwG8OYqj

    @CERT_Arabic

    27 Dec 2024

    15 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  43. 🔥 تنبيه CVE-2024-3393! يمكن لحزمة DNS خبيثة واحدة أن تعيد تشغيل جدار حماية Palo Alto وتترك شبكتك بلا حماية. من المهم أن تعرف: “ يؤثر هذا الخلل على PAN-OS 10.X و11.X، بما في ذلك Prisma Access. “ قد تؤدي الهجمات المتكررة إلى إجبار جدار الحماية الخاص بك على وضع الصيانة. (1/2)

    @CERT_Arabic

    27 Dec 2024

    47 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    1 Reply

    0 Quotes

  44. CVE-2024-3393 DoS Vulnerability in Palo Alto PAN-OS #PaloAlto #CVE-2024-3393 https://t.co/DgmBzUFGtq

    @pravin_karthik

    27 Dec 2024

    53 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  45. #PaloAlto: firewalls are being rebooted en-masse into maintenance mode remotely by attackers actively exploiting CVE-2024-3393 vulnerability by sending a malicious DNS packet to the target device. Patched PanOS versions now available: 👇 https://t.co/28dtf2glEP

    @securestep9

    27 Dec 2024

    2951 Impressions

    12 Retweets

    27 Likes

    9 Bookmarks

    0 Replies

    0 Quotes

  46. 🚨 Just published! 🚨 Hackers are targeting a major DoS vulnerability (CVE-2024-3393) in Palo Alto Networks firewalls. If your network relies on PAN-OS, you need to act NOW to secure your defenses. What’s the impact? How can you protect your organization? I break it all down in

    @AfonsoInfante

    27 Dec 2024

    71 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    1 Reply

    0 Quotes

  47. 🔥 Palo Alto Networks Incident - Is Palo Alto Networks down? 🔥 Title: CVE-2024-3393 PAN-OS: Firewall Denial of Service (DoS) in DNS Security Using a Specially Crafted Packet Incident Deeplink: https://t.co/cD3LbQq4ro Statusphere: https://t.co/LyNRKT9tCW Alto Networks #outa…

    @Statusph3re

    27 Dec 2024

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  48. 🔥 Hackers Exploit CVE-2024-3393 to Disable Palo Alto Networks Firewalls 🔥 WIRE TOR - The Ethical Hacking Services A critical Denial of Service (DoS) vulnerability, CVE-2024-3393, is being actively exploited by hackers to disrupt Palo Alto Networks firewalls. https://t.co/PK9X9

    @WireTor

    27 Dec 2024

    71 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  49. 🚨 Critical Alert:🚨 DoS Flaw Exploited in Palo Alto Networks Firewalls Hackers are actively exploiting CVE-2024-3393, a DoS vulnerability in PAN-OS, causing firewalls to reboot & enter maintenance mode, disrupting protections. 🛠️ Mitigation Steps:🛡️ Update to PAN-OS… ht

    @arunpratap786

    27 Dec 2024

    79 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  50. 🚨 Critical Alert:🚨 DoS Flaw Exploited in Palo Alto Networks Firewalls Hackers are actively exploiting CVE-2024-3393, a DoS vulnerability in PAN-OS, causing firewalls to reboot & enter maintenance mode, disrupting protections. 🛠️ Mitigation Steps:🛡️ Update to PAN-OS… ht

    @arunpratap786

    27 Dec 2024

    6 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations