Security Advisory

CVE-2020-1989

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-04-08 18:41:58
Last updated 2024-09-16 19:14:44
Assigner palo_alto
State PUBLISHED

Description

An incorrect privilege assignment vulnerability when writing application-specific files in the Palo Alto Networks Global Protect Agent for Linux on ARM platform allows a local authenticated user to gain root privileges on the system. This issue affects Palo Alto Networks Global Protect Agent for Linux 5.0 versions before 5.0.8; 5.1 versions before 5.1.1.