We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
Using the AES-128-CCM algorithm for IPSec on certain Palo Alto Networks PAN-OS® firewalls (PA-7500, PA-5400, PA-5400f, PA-3400, PA-1600, PA-1400, and PA-400 Series) leads to unencrypted data transfer to devices that are connected to the PAN-OS firewall through IPSec. This issue does not affect Cloud NGFWs, Prisma® Access instances, or PAN-OS VM-Series firewalls. NOTE: The AES-128-CCM encryption algorithm is not recommended for use.
Reserved 2024-12-20 | Published 2025-05-14 | Updated 2025-05-14 | Assigner palo_altoCWE-319 Cleartext Transmission of Sensitive Information
2025-05-14: | Initial Publication |
Benjamin Bai of Palo Alto Networks
security.paloaltonetworks.com/CVE-2025-0136
Support options