PAN-SA-2020-0011 Informational: Impact of OpenSSL vulnerability CVE-2020-1971

Informational
Description
Palo Alto Networks Product Security Assurance team has evaluated the vulnerability CVE-2020-1971 that affects the OpenSSL library.
The vulnerability does not have a security impact on PAN-OS, GlobalProtect App, or Cortex XSOAR. The scenarios required for successful exploitation do not exist on these products.
| CVE | Summary |
|---|---|
| CVE-2020-1971 | Denial of service vulnerability in OpenSSL related to EDIPARTYNAME NULL pointer de-reference |
Product Status
| Versions | Affected | Unaffected |
|---|---|---|
| Cortex XSOAR | None | All |
| GlobalProtect App | None | All |
| PAN-OS | None | All |
Solution
No product updates are required for these issues.
Timeline
Initial publication