CVE-2024-0012 PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015)

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Content translations are temporarily unavailable due to site maintenance. We apologize for any inconvenience.

CVE-2024-0012 PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015)

It is suggested to upgrade to version 10.2.12-h2 to remediate the vulnerability. However, the firmware version 10.2.12-h2 is currently in monitoring status. It is also mentioned that the same fix is available in version 10.2.10-h9, which is the preferred version.

My question is: if the fix is available in the preferred version, why recommend upgrading to a version that is still in monitoring status?

StratogentNetworkTeam_0-1732216517067.png

 

1 REPLY 1

L2 Linker

Hi @StratogentNetworkTeam 

 

Based on your statement, it is recommended to upgrade the device to the preferred version as it is considered the most stable version. However, it is important to note that the decision to upgrade depends on the specific environment and any issues that may arise.

If you encounter any issues with the preferred release and the issue has been addressed in the latest version, it may be advisable to upgrade to the latest version.

Furthermore, if you have a test environment, it is recommended to validate the PAN-OS before performing the upgrade in the production environment. This will help ensure that the upgrade will not cause any unexpected issues or disruptions.

  • 1949 Views
  • 1 replies
  • 2 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!