Skip to finding
important · Edge — Check Point

Unauthenticated VPN negotiation can execute code on affected Check Point gateways and management servers.

Affects

Check Point Security Gateway, Spark appliances and, for CVE-2026-85103, Security Management Server installations processing VPN certificates.

Malformed certificate data can reach either improper validation or an ASN.1-decoding heap overflow in deployments using Remote Access or Site-to-Site VPN.

Detail and 4 sources
Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Friday, September 11, 2026