Description
The Security Gateway does not correctly validate a length value in certain IKE packets when NAT-T is used (4500/UDP). As a result, a specially crafted or malformed packet can cause the VPN processing service to terminate unexpectedly, leading to denial of service (temporary interruption of VPN negotiations/traffic).
CVSS breakdown
CVSS 3.1
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Affected products
- checkpoint / Quantum Security GatewayR82.10 with Jumbo Hotfix Take 6 or below – R82.10 with Jumbo Hotfix Take 6 or below
- checkpoint / Quantum Security GatewayR82 with Jumbo Hotfix Take 91 or below – R82 with Jumbo Hotfix Take 91 or below
- checkpoint / Quantum Security GatewayR81.20 with Jumbo Hotfix Take 127 or below – R81.20 with Jumbo Hotfix Take 127 or below
- checkpoint / Quantum Security GatewayAll releases from R81.10 and below – All releases from R81.10 and below