CVE-2026-0264EPSS p38.5%
CVE-2026-0264CVE-2026-0264
paloaltonetworks / pan-os
Description
A buffer overflow vulnerability in the DNS proxy and DNS Server features of Palo Alto Networks PAN-OS® Software allows an unauthenticated attacker with network access to cause a denial of service (DoS) condition (all PAN-OS platforms except Cloud NGFW and Prisma Access) or potentially execute arbitrary code by sending specially crafted network traffic (PA-Series hardware only).
Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
Scoring
| CVSS | 9.8 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.47% probability of exploitation · percentile 38.5% · 2026-08-03T12:00:16Z |
| Last modified | 2026-07-14 |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.