Executive brief
Check Point Quantum Security Management and Security Gateway are critical network security appliances that manage firewall rules, VPN access, and threat protection for enterprise networks. A heap buffer overflow in the ASN.1 certificate parsing code allows attackers without authentication to crash these systems or execute arbitrary code remotely, potentially compromising all network security controls and encrypted VPN connections they protect.
Technical details
This is a heap-based buffer overflow vulnerability in the ASN.1 decoding functionality used to parse VPN certificates on Check Point Quantum Security appliances. The vulnerability exists in certificate processing code that is reachable without prior authentication, making it remotely exploitable over the network. An attacker can craft a malicious certificate with an oversized field that triggers the overflow when parsed, leading to arbitrary code execution in the security appliance's memory space. No patch status is currently available from the references provided.
Affected products
- Check Point Quantum Security Management <UNKNOWN>
- Check Point Quantum Security Gateway <UNKNOWN>
Timeline
- 2026-09-09: disclosed