logo

Unauthenticated Attacker Can Trap Palo Alto Firewalls in Maintenance Mode Loop (CVE-2026-0229)

ID: c5a620e0-b709-5199-b93b-519083b58a14

STIX ID: report--c5a620e0-b709-5199-b93b-519083b58a14

Feed Name: securityonline.info

Threat Score
55/100

Date Published: 2026-02-12

Date Updated: 2026-04-23

Author: Ddos

...
...

Palo Alto Networks PAN-OS contains CVE-2026-0229, a CVSSv4 6.6 denial-of-service vulnerability in the Advanced DNS Security (ADNS) feature that allows unauthenticated crafted packets to induce reboot loops and potentially push firewalls into maintenance mode; exploitation requires ADNS to be enabled and a spyware profile set to a non-allow action, and patches are available (upgrade to PAN-OS 12.1.4+ or 11.2.10+), while Cloud NGFW and Prisma Access are unaffected.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.