An incorrect privilege assignment vulnerability when writing application-specific files in the Palo Alto Networks Global Protect Agent for Linux on ARM platform allows a local authenticated user to gain root privileges on the system. This issue affects Palo Alto Networks Global Protect Agent for Linux 5.0 versions before 5.0.8; 5.1 versions before 5.1.1.
Fixes

Solution

This issue is fixed in Global Protect Agent 5.0.8, Global Protect Agent 5.1.1 and all later versions.


Workaround

There are no viable workarounds for this issue.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: palo_alto

Published:

Updated: 2024-09-16T19:14:44.124Z

Reserved: 2019-12-04T00:00:00

Link: CVE-2020-1989

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-08T19:15:13.993

Modified: 2024-11-21T05:11:47.837

Link: CVE-2020-1989

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.