Palo Alto Networks PAN-OS Denial-of-Service Vulnerabilities in Network Traffic Parsing

Vulnerability

Multiple denial-of-service vulnerabilities have been identified in Palo Alto Networks PAN-OS software. These vulnerabilities allow an unauthenticated attacker with network access to disrupt services by sending specially crafted network traffic to a dataplane interface. This issue affects several versions of PAN-OS, including 12.1, 11.2, 11.1, and 10.2, as well as older unsupported versions. However, Panorama and Cloud NGFW are not impacted.

Impact

Exploitation of these vulnerabilities leads to a significant denial-of-service condition, causing high availability disruption on the affected system.

Remediation

Users can upgrade to the latest versions of PAN-OS 12.1, 11.2, 11.1, or 10.2, depending on their current version. For those using Prisma Access, upgrades are being managed by Palo Alto Networks as per the customer upgrade schedule.

Added: May 13, 2026, 7:35 PM
Updated: May 13, 2026, 7:35 PM

Vulnerability Rating

Custom Algorithm
spread
5.7
impact
2.5
exploitability
6.6
remediation
8.3
relevance
8.2
threat
0.0
urgency
5.7
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.