216.73.217.24

CVE-2026-0264

· Published 13/05/2026 18:16 · Modified 13/05/2026 18:17

Labels: CVE-2026-0264 2026-05-13CVE-2026-0264CWE-122[email protected]

Essential information

Published
13/05/2026 18:16
Modified
13/05/2026 18:17
Author
Creator
CVSS
7.2 HIGH (v3) 7.2 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A buffer overflow vulnerability in the DNS proxy and DNS Server features of Palo Alto Networks PAN-OS® Software allows an unauthenticated attacker with network access to cause a denial of service (DoS) condition (all PAN-OS platforms except Cloud NGFW and Prisma Access) or potentially execute arbitrary code by sending specially crafted network traffic (PA-Series hardware only). Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
palo alto networks / pan-os cpe:2.3:a:palo_alto_networks:pan-os:*:*:*:*:*:*:*:*
palo alto networks / pa-series cpe:2.3:h:palo_alto_networks:pa-series:*:*:*:*:*:*:*:*

References