Description
A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS® software allows an authenticated user to initiate system reboots using a maliciously crafted packet. Repeated attempts to initiate a reboot causes the firewall to enter maintenance mode. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
Problem types
CWE-754: Improper Check for Unusual or Exceptional Conditions
Product status
All (custom)
12.1.0 (custom) before 12.1.5
11.2.0 (custom) before 11.2.10
11.1.0 (custom) before 11.1.6-h21
10.2.0 (custom) before 10.2.16-h6
All (custom)
All (custom)
Timeline
| 2026-06-10: | Initial publication. |
References
security.paloaltonetworks.com/CVE-2026-0269