Description
A denial-of-service (DoS) vulnerability in the Advanced DNS Security (ADNS) feature of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker to initiate system reboots using a maliciously crafted packet. Repeated attempts to initiate a reboot causes the firewall to enter maintenance mode. Cloud NGFW and Prisma Access® are not impacted by this vulnerability.
Problem types
CWE-754 Improper Check for Unusual or Exceptional Conditions
Product status
All (custom)
12.1.0 (custom) before 12.1.4
11.2.0 (custom) before 11.2.10
11.1.0 (custom) before 11.1.11
10.2.0 (custom) before 10.2.17
All (custom) before 10.2.10-h28
Timeline
| 2026-02-11: | Initial Publication |
Credits
an internal reporter, jliu@TikkalaSecurity,
References
security.paloaltonetworks.com/CVE-2026-0229