Description
The VPN service may mishandle an unexpected IKE fragment value received on the IKE port 500/UDP during the early stage of a connection attempt. This can cause the service to terminate unexpectedly, resulting in denial of service (temporary disruption of VPN-related functionality).
CVSS breakdown
CVSS 3.1
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Affected products
- checkpoint / Quantum Security GatewayR82.10 with Jumbo Hotfix Take 6 or below – R82.10 with Jumbo Hotfix Take 6 or below
- checkpoint / Quantum Security GatewayR82 with Jumbo Hotfix Take 91 or below – R82 with Jumbo Hotfix Take 91 or below
- checkpoint / Quantum Security GatewayR81.20 with Jumbo Hotfix Take 127 or below – R81.20 with Jumbo Hotfix Take 127 or below
- checkpoint / Quantum Security GatewayAll releases from R81.10 and below – All releases from R81.10 and below