#VU29606 Integer underflow in Palo Alto PAN-OS - CVE-2020-2031
Published: July 9, 2020 / Updated: July 15, 2020
Palo Alto PAN-OS
Palo Alto Networks, Inc.
Description
The vulnerability allows a remote user to perform a denial of service (DoS) attack.
The vulnerability exists due to integer underflow in the dnsproxyd component of the PAN-OS management interface. A remote authenticated administrator attacker can send a specially crafted request to the affected application, trigger integer underflow and perform a denial of service attack by restarting the device and putting it into maintenance mode.