<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PAN-OS 10.2 preferred release Vs. vulnerabilities in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222790#M123514</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Here is what I do to see what gets patched etc. I first look a the vulnerability and see to what degree I am affected. If we look at CVE-2025-0108, the main issue is "&lt;SPAN&gt;an unauthenticated attacker with network access to the management web interface to bypass the authentication". Since I have my management interfaces protected by the PAN and policies allowed via user-id, its a very low impact for me. Meaning I only allow those who should/do have access already so not a big deal.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;So if there was not a preferred release that has the patch applied, I could wait since the likelihood of this being exploited is extremely low to nonexistent.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Happy to discuss how to protect the management interface if you wish. Maybe I'll write and article on it?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Hope this helps.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 05 Mar 2025 15:21:21 GMT</pubDate>
    <dc:creator>OtakarKlier</dc:creator>
    <dc:date>2025-03-05T15:21:21Z</dc:date>
    <item>
      <title>PAN-OS 10.2 preferred release Vs. vulnerabilities</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222744#M123505</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp; maybe this is a silly question, but as far as I can see the current PAN-OS 10.2 preferred release dates back in november and does not include fixes for recently discovered vulnerabilities (CVE-2025-0108, for example). I usually put a vulnerability protection profile in front of my management networks, but this vulnerability is not covered by any threat prevention signature. To my understandings, this means that running the currently preferred release leaves the firewall vulnerable to this particular threat. Am I right or am I missing something?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind regards&lt;/P&gt;</description>
      <pubDate>Wed, 05 Mar 2025 09:40:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222744#M123505</guid>
      <dc:creator>grenzi</dc:creator>
      <dc:date>2025-03-05T09:40:30Z</dc:date>
    </item>
    <item>
      <title>Re: PAN-OS 10.2 preferred release Vs. vulnerabilities</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222767#M123509</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/61214"&gt;@grenzi&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here's the advisory for&amp;nbsp;CVE-2025-0108:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://security.paloaltonetworks.com/CVE-2025-0108" target="_blank"&gt;https://security.paloaltonetworks.com/CVE-2025-0108&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You will find 10.2 versions listed here that are unaffected by the vulnerability.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind regards,&lt;/P&gt;
&lt;P&gt;-Kim.&lt;/P&gt;</description>
      <pubDate>Wed, 05 Mar 2025 11:51:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222767#M123509</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2025-03-05T11:51:56Z</dc:date>
    </item>
    <item>
      <title>Re: PAN-OS 10.2 preferred release Vs. vulnerabilities</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222771#M123511</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/61214"&gt;@grenzi&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;That is a good point.&amp;nbsp; I went ahead and upgraded to a fixed version since it is only a couple minor releases different.&amp;nbsp; The only changes in the software will be vulnerability fixes.&amp;nbsp; I don't know the exact process, but PANW always waits a while before marking a new release as preferred.&amp;nbsp; I believe they look at the support cases for a little while to make sure there are no bad bugs in the code.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Tom&lt;/P&gt;</description>
      <pubDate>Wed, 05 Mar 2025 12:06:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222771#M123511</guid>
      <dc:creator>TomYoung</dc:creator>
      <dc:date>2025-03-05T12:06:37Z</dc:date>
    </item>
    <item>
      <title>Re: PAN-OS 10.2 preferred release Vs. vulnerabilities</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222772#M123512</link>
      <description>&lt;P&gt;Hi Kiwi, thank you. I know about the patch releases that fix this vulnerability; my only concern is that che currently preferred release is affected, so the solution is to install a "non preferred" release. Anyway I saw other similar questions on the community, for example: &lt;A href="https://live.paloaltonetworks.com/t5/general-topics/cve-2025-0108/td-p/1220580" target="_blank"&gt;https://live.paloaltonetworks.com/t5/general-topics/cve-2025-0108/td-p/1220580&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm not afraid of upgrading, it's only a matter of, let's say, consistence &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 05 Mar 2025 12:12:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222772#M123512</guid>
      <dc:creator>grenzi</dc:creator>
      <dc:date>2025-03-05T12:12:45Z</dc:date>
    </item>
    <item>
      <title>Re: PAN-OS 10.2 preferred release Vs. vulnerabilities</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222790#M123514</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Here is what I do to see what gets patched etc. I first look a the vulnerability and see to what degree I am affected. If we look at CVE-2025-0108, the main issue is "&lt;SPAN&gt;an unauthenticated attacker with network access to the management web interface to bypass the authentication". Since I have my management interfaces protected by the PAN and policies allowed via user-id, its a very low impact for me. Meaning I only allow those who should/do have access already so not a big deal.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;So if there was not a preferred release that has the patch applied, I could wait since the likelihood of this being exploited is extremely low to nonexistent.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Happy to discuss how to protect the management interface if you wish. Maybe I'll write and article on it?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Hope this helps.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 05 Mar 2025 15:21:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pan-os-10-2-preferred-release-vs-vulnerabilities/m-p/1222790#M123514</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2025-03-05T15:21:21Z</dc:date>
    </item>
  </channel>
</rss>

