Untriaged
PAN-OS: Firewall Denial of Service (DoS) in GlobalProtect Gateway and Portal
A vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to cause a denial of service (DoS) to the firewall. Repeated attempts to trigger this issue results in the firewall entering into maintenance mode.
References
-
https://security.paloaltonetworks.com/CVE-2025-4620 vendor-advisory
-
https://security.paloaltonetworks.com/CVE-2026-0227 vendor-advisory
Affected products
PAN-OS
- <11.2.10-h2, 11.2.7-h8, 11.2.4-h15
- <10.2.18-h1, 10.2.16-h6, 10.2.13-h18, 10.2.10-h30, 10.2.7-h32
- <11.1.13, 11.1.10-h9, 11.1.6-h23, 11.1.4-h27
- <10.1.14-h20
- <12.1.4, 12.1.3-h3
Cloud NGFW
- ==All
Prisma Access
- <10.2.10-h29
- <10.2.10-h29, 10.2.4-h43
- <11.2.7-h8
Matching in nixpkgs
pkgs.python312Packages.pan-os-python
Palo Alto Networks PAN-OS SDK for Python
pkgs.python313Packages.pan-os-python
Palo Alto Networks PAN-OS SDK for Python
Package maintainers
-
@jherland Johan Herland <johan@herland.net>