Palo Alto Firewall CVE-2022-2884

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Palo Alto Firewall CVE-2022-2884

L0 Member

Hi,

 

Does anyone know if GitLab Remote Command Execution Vulnerability is covered with Palo Alto AV Signature?

Is Palo Alto affected by it?

I was not able to find it in their Security Advisories.

 

Vulnerability Details:

Title

GitLab Remote Command Execution Vulnerability

CVE ID

CVE-2022-2884

CVE Summary

GitLab Community Edition and GitLab Enterprise Edition are prone to remote code-execution vulnerabilities via GitHub Import. An attacker can leverage this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely result in denial of service conditions.

 

The vulnerability has a CVSS base score of 9.9.

Link(s)

https://about.gitlab.com/releases/2022/08/22/critical-security-release-gitlab-15-3-1-released/



Please note you are posting a public message where community members and experts can provide assistance. Sharing private information such as serial numbers or company information is not recommended.
2 REPLIES 2

Cyber Elite
Cyber Elite

Hello,

Here is the PAN threat vault.

https://threatvault.paloaltonetworks.com/

I did a quick search and didnt find it. I bet PAN is working on one.

Regards,

L5 Sessionator

A signature was already released. It's a vulnerability protection signature (not an AV signature).
https://threatvault.paloaltonetworks.com/?query=CVE-2022-2884&type=

 

Palo Alto Networks Firewall is not using GitLab, thus not affected by CVE-2022-2884.

  • 2744 Views
  • 2 replies
  • 1 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!