Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-0229

26
FAUCET Score

CVE-2026-0229 describes a denial-of-service vulnerability in the Advanced DNS Security (ADNS) feature of Palo Alto Networks PAN-OS software, allowing unauthenticated attackers to trigger system reboots and ultimately force the firewall into maintenance mode via crafted packets. This vulnerability has a CVSS score of 6.6 (Medium), indicating a network-based attack with low complexity that can lead to high availability impact. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
Palo Alto NetworksPAN-OS
>= 11.2.0, < 11.2.10, >= 12.1.0, < 12.1.4CNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 4.0

6.6MEDIUM

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:D/RE:M/U:Amber

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
NONE
User Interaction
NONE
VS Confidentiality
NONE
VS Integrity
NONE
VS Availability
HIGH
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
UNREPORTED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.56%
Probability of exploitation in next 30 days
EPSS Percentile
43.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0056 is in the 27th percentile among its peer group of 23,725 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (18)

astropatch availablevia llm_extracted
Fixed in: 12.1.4, 11.2.10
View patch
asustorpatch availablevia llm_extracted
Fixed in: 11.2.10, 12.1.4
View patch
bigbluebuttonpatch availablevia llm_extracted
Fixed in: 12.1.4
coollabspatch availablevia llm_extracted
Fixed in: 12.1.4, 11.2.10
View patch
langgeniuspatch availablevia llm_extracted
Fixed in: 11.2.10, 12.1.4
View patch
lfedgepatch availablevia llm_extracted
Fixed in: 10.2.0, 11.1.0, 11.2.10, 12.1.4
View patch
linksyspatch availablevia llm_extracted
Fixed in: 12.1.4, 11.2.10
View patch
mattermostpatch availablevia llm_extracted
Fixed in: 12.1.4
View patch
meshtasticpatch availablevia llm_extracted
Fixed in: 12.1.4, 11.2.10
meterspherepatch availablevia llm_extracted
Fixed in: 12.1.4, 11.2.10
View patch
notaryprojectpatch availablevia llm_extracted
Fixed in: All, >= 12.1.4, >= 11.2.10, 11.1.0, 10.2.0, All, All
View patch
nvidiapatch availablevia llm_extracted
Fixed in: 12.1.4, 11.2.10
View patch
opensslpatch availablevia llm_extracted
Fixed in: 11.2.10, 12.1.4
View patch
sitecorepatch availablevia llm_extracted
Fixed in: 12.1.4
View patch
strapipatch availablevia llm_extracted
Fixed in: 11.2.10, 12.1.4
View patch
vantage6patch availablevia llm_extracted
Fixed in: 12.1.4
View patch
wazuhpatch availablevia llm_extracted
Fixed in: ['12.1.4', '11.2.10']
View patch
paloaltovendor investigatingvia vendor_rss
View patch

Vendor Advisories (18)

paloaltopaloalto:security.paloaltonetworks.com/CVE-2026-0229MEDIUM

CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature (Severity: MEDIUM)

Feb 19, 2026
wazuhllm-wazuh-6e147965b1b1cf30MEDIUM

CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
coollabsllm-coollabs-614ee4d2b7498304MEDIUM

CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
bigbluebuttonllm-bigbluebutton-9e0dbcb525c46ff3MEDIUM

CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
sitecorellm-sitecore-f16c4250a03d942aMEDIUM

PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
notaryprojectllm-notaryproject-6cf61d9919022461MEDIUM

CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
linksysllm-linksys-8590268d70ab1e00MEDIUM

PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
astrollm-astro-af5945708b0cf7abMEDIUM

CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
vantage6llm-vantage6-b1d6d788b28e9cefMEDIUM

CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
strapillm-strapi-1783ab6bb53bb218MEDIUM

PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
opensslllm-openssl-5fe36b06c02474c4MEDIUM

PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
nvidiallm-nvidia-e84cca5e41c390e8MEDIUM

CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
asustorllm-asustor-544aa449af63c66aMEDIUM

PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
meterspherellm-metersphere-9eaa1f7c990399f7MEDIUM

PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
lfedgellm-lfedge-73031216145f7292MEDIUM

PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
meshtasticllm-meshtastic-492ff0f51ca5296aMEDIUM

CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
langgeniusllm-langgenius-a8e3e91b68cb9e2bMEDIUM

CVE-2026-0229 PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026
mattermostllm-mattermost-3c0d2e034f1ff560MEDIUM

PAN-OS: Denial of Service in Advanced DNS Security Feature

Feb 11, 2026

References

security.paloaltonetworks.com / CVE-2026-0229