CVE-2026-85103
9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Summary
A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| checkpoint | Quantum Security Gateway | R82.10 with Jumbo Hotfix Take 43 or below | affected |
| checkpoint | Quantum Security Gateway | R82 with Jumbo Hotfix Take 125 or below | affected |
| checkpoint | Quantum Security Gateway | R81.20 with Jumbo Hotfix Take 165 or below | affected |
| checkpoint | Quantum Security Management | R82.10 with Jumbo Hotfix Take 43 or below | affected |
| checkpoint | Quantum Security Management | R82 with Jumbo Hotfix Take 125 or below | affected |
| checkpoint | Quantum Security Management | R81.20 with Jumbo Hotfix Take 165 or below | affected |
Weaknesses
- CWE-122: CWE-122: Heap-based Buffer Overflow.
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: yes
- Technical Impact: total
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.