Unauthenticated Attacker Can Trap Palo Alto Firewalls in Maintenance Mode Loop (CVE-2026-0229)
ID: c5a620e0-b709-5199-b93b-519083b58a14
STIX ID: report--c5a620e0-b709-5199-b93b-519083b58a14
Feed Name: securityonline.info
Threat Score
Palo Alto Networks PAN-OS contains CVE-2026-0229, a CVSSv4 6.6 denial-of-service vulnerability in the Advanced DNS Security (ADNS) feature that allows unauthenticated crafted packets to induce reboot loops and potentially push firewalls into maintenance mode; exploitation requires ADNS to be enabled and a spyware profile set to a non-allow action, and patches are available (upgrade to PAN-OS 12.1.4+ or 11.2.10+), while Cloud NGFW and Prisma Access are unaffected.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
