CVE-2020-2032 — Time-of-check Time-of-use (TOCTOU) Race Condition in Palo Alto Networks Globalprotect APP
Severity
7.0HIGHNVD
EPSS
0.0%
top 89.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 10
Latest updateMay 24
Description
A race condition vulnerability Palo Alto Networks GlobalProtect app on Windows allows a local limited Windows user to execute programs with SYSTEM privileges. This issue can be exploited only while performing a GlobalProtect app upgrade. This issue affects: GlobalProtect app 5.0 versions earlier than GlobalProtect app 5.0.10 on Windows; GlobalProtect app 5.1 versions earlier than GlobalProtect app 5.1.4 on Windows.
CVSS vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9
Affected Packages3 packages
🔴Vulnerability Details
2GHSA▶
GHSA-gmfm-xrwm-phqh: A race condition vulnerability Palo Alto Networks GlobalProtect app on Windows allows a local limited Windows user to execute programs with SYSTEM pri↗2022-05-24
CVEList▶
GlobalProtect App: File race condition vulnerability leads to local privilege escalation during upgrade↗2020-06-10
📋Vendor Advisories
1Palo Alto▶
GlobalProtect App: File race condition vulnerability leads to local privilege escalation during upgrade↗2020-06-10