CVE-2026-85103 PUBLISHED

Heap-based Buffer Overflow in VPN Certificate ASN.1 Decoding

Assigner: checkpoint
Reserved: 03.09.2026 Published: 09.09.2026 Updated: 10.09.2026

A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Score: 9.8

Product Status

Vendor checkpoint
Product Quantum Security Gateway
Versions
  • Version R82.10 with Jumbo Hotfix Take 43 or below is affected
  • Version R82 with Jumbo Hotfix Take 125 or below is affected
  • Version R81.20 with Jumbo Hotfix Take 165 or below is affected
Vendor checkpoint
Product Quantum Security Management
Versions
  • Version R82.10 with Jumbo Hotfix Take 43 or below is affected
  • Version R82 with Jumbo Hotfix Take 125 or below is affected
  • Version R81.20 with Jumbo Hotfix Take 165 or below is affected

References

Problem Types

  • CWE-122: Heap-based Buffer Overflow. CWE