GHSA-v62p-f565-pfxr · Severity: medium — A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN...
A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN-OS® software allows an authenticated user to initiate system reboots using a maliciously crafted packet. Repeated attempts to initiate a reboot causes the firewall to enter maintenance mode. Panorama, Cloud NGFW, and Prisma® Access are not impacted by this vulnerability.
Conclusion & alert: CVE-2026-0269 is rated Low Risk (21.3/100): CVSS Medium severity, with low exploitation likelihood (EPSS 0.18%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.02% | 0.18% | +0.17% |
| 2 | 2026-06-11 | — | 0.02% | — |
Full EPSS history (2 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 4.6 | 4.0 | MEDIUM |
|
— | — | [email protected] |
GHSA-v62p-f565-pfxr · Severity: medium — A memory corruption vulnerability in the processing of tunnel traffic in Palo Alto Networks PAN...
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| palo_alto_networks | pan-os | >= 12.1.0, < 12.1.5 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 12.1.4, < 12.1.4-h5 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 11.2.0, < 11.2.10 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 11.2.7, < 11.2.7-h4 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 11.2.4, < 11.2.4-h17 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 11.1.0, < 11.1.12 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 11.1.10, < 11.1.10-h7 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 11.1.6, < 11.1.6-h21 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 11.1.4, < 11.1.4-h33 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 10.2.0, < 10.2.18 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 10.2.16, < 10.2.16-h6 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 10.2.13, < 10.2.13-h21 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 10.2.10, < 10.2.10-h36 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |
| palo_alto_networks | pan-os | >= 10.2.7, < 10.2.7-h34 | cpe:2.3:o:palo_alto_networks:pan-os:*:*:*:*:*:*:*:* |