An improper file signature check in Palo Alto Networks Cortex XDR agent may allow an attacker to bypass the Cortex XDR agent's executable blocking capabilities and run untrusted executables on the device. This issue can be leveraged to execute untrusted software without being detected or blocked.
Fixes

Solution

This issue is fixed in Cortex XDR agent 7.9.102-CE, Cortex XDR agent 8.1.3, Cortex XDR agent 8.2.2, and all later Cortex XDR agent versions.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: palo_alto

Published:

Updated: 2024-08-01T21:25:03.178Z

Reserved: 2024-06-12T15:27:56.188Z

Link: CVE-2024-5912

cve-icon Vulnrichment

Updated: 2024-08-01T21:25:03.178Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-07-10T19:15:11.697

Modified: 2024-11-21T09:48:34.157

Link: CVE-2024-5912

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.