Denial-of-Service Vulnerability in Palo Alto Networks PAN-OS Software
CVE-2026-0229
What is CVE-2026-0229?
The PAN-OS software by Palo Alto Networks contains a denial-of-service vulnerability in its Advanced DNS Security (ADNS) feature. An unauthenticated attacker can exploit this vulnerability by sending specially crafted packets that trigger unauthorized system reboots. If this is done repeatedly, it may cause the firewall to enter maintenance mode, disrupting service availability. It’s crucial for users to apply the necessary security updates to protect their systems from potential attacks, as Cloud NGFW and Prisma Access services remain unaffected.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
PAN-OS 12.1.0 < 12.1.4
PAN-OS 11.2.0 < 11.2.10
Cloud NGFW All
References
CVSS V4
Timeline
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved