[NEU] [hoch] Check Point Security Gateway, Spark Firewall und Security Management: Mehrere Schwachstellen ermöglichen Codeausführung
Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Check Point Security Gateway, Check Point Spark Firewall und Check Point Security Management ausnutzen, um beliebigen Programmcode auszuführen.
Details
Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-3305
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-85102 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-85103 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- unknownNCSC-2026-0365 [1.00] [H/H] Kwetsbaarheden verholpen in Check Point VPN productenncsc-nl
- critical2026-012: Critical Vulnerabilities in Check Point Productscert-eu
- unknownCheck Point security advisory (AV26-902)cccs
- criticalCVE-2026-85103: A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated re…nvd
- criticalCVE-2026-85102: Improper certificate trust validation during VPN negotiation in Check Point Quantum Security G…nvd
More from CERT-Bund (BSI) Security Advisories
- medium[UPDATE] [mittel] OpenSSH: Mehrere Schwachstellen2026-09-10
- medium[UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen2026-09-10
- high[UPDATE] [hoch] OpenVPN: Mehrere Schwachstellen2026-09-10
- medium[UPDATE] [mittel] gzip: Mehrere Schwachstellen2026-09-10
- medium[UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen2026-09-10