CVE-2026-0271: Prisma Access Agent: Local Privilege Escalation by Authorized Users (Severity: MEDIUM)
A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma Access Agent app on Linux devices enables a local user to execute code with elevated privileges.
This does not impact Prisma Access Agent on Windows, macOS, iOS, Android, or ChromeOS.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 26.2.1 - Upgrade
Upgrade
Palo Alto Networks Prisma Access Agent (Linux)to a version that resolves this vulnerability.Fixed in 26.2.1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0271?
CVE-2026-0271 has a severity rating of 8.5, categorized as high.
How do I fix CVE-2026-0271?
To fix CVE-2026-0271, upgrade the Prisma Access Agent on Linux from versions 25.7 through 26.2.0 to version 26.2.1 or later.
Who is affected by CVE-2026-0271?
CVE-2026-0271 affects local users of the Palo Alto Networks Prisma Access Agent on Linux devices.
Is CVE-2026-0271 a local or remote vulnerability?
CVE-2026-0271 is a local privilege escalation vulnerability.
Are there any workarounds for CVE-2026-0271?
There are no known workarounds for CVE-2026-0271.