Palo Alto Networks patches DoS bug in PAN-OS software
Summary
Palo Alto said repeated attempts to trigger this condition will cause the firewall to enter maintenance mode, requiring manual intervention on the part of the security team. Kowski explained while previous PAN-OS issues reported last month focused on authentication bypass or command injection, this new DoS vulnerability specifically targets the DNS inspection mechanism that organizations rely on to detect command-and-control threats, tunneling attempts, and various DNS-based attacks. “The fact that Palo Alto Networks discovered this in production use suggests active exploitation attempts, making immediate patching crucial for affected organizations,” said Kowski. When exploited, the malicious packets trigger the firewall to enter maintenance mode after repeated attempts, effectively causing prolonged service disruptions. “Palo Alto Networks discovered this flaw during production use and has reported that some customers are already experiencing DoS incidents as their firewalls block these harmful DNS packets,” said Soroko.