Skip to finding
important · Edge — Check Point

Two certificate-processing flaws allow unauthenticated code execution on Check Point gateways and managers.

Affects

Check Point Quantum Security Gateway, Quantum Security Management Server, and Spark Firewall network-security appliances.

The primitives are a certificate trust-validation failure and a heap overflow in VPN-certificate ASN.1 decoding.

Detail and 3 sources

Affected VPN or certificate-processing services are sufficient access, including negotiation exposed on UDP/500 or UDP/4500.

Check Point reports internal discovery and no active exploitation.

Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Thursday, September 10, 2026