Critical IKEv2 Buffer Overflow and CAS Bypass Hit Palo Alto PAN-OS
ID: 44cdf507-c93b-57cc-be02-a4b0ef3eeca8
STIX ID: report--44cdf507-c93b-57cc-be02-a4b0ef3eeca8
Feed Name: securityonline.info
Palo Alto Networks published PAN-OS security updates for multiple high-impact vulnerabilities—most notably CVE-2026-0263 (IKEv2 buffer overflow allowing unauthenticated RCE/DoS), CVE-2026-0264 (DNS proxy/DNS Server RCE or DoS), and CVE-2026-0265 (Cloud Authentication Service bypass on management interfaces). The advisory lists affected PA-Series, VM-Series and Panorama versions, recommended fixed releases, and interim mitigations (restrict management access, change auth profiles, disable DNS proxy, enable specific Threat IDs) and notes Cloud NGFW and Prisma Access are generally unaffected.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
