← back

CVE-2026-85103

CRITICAL · 9.8 EPSS 0.4%
hype MIXED · 58 hack

Vendor patching urgently, real vuln, but no KEV-listing or confirmed exploitation yet observed.

What: Heap-based buffer overflow in Check Point Quantum Security Gateway VPN certificate ASN.1 decoding allowing unauthenticated remote code execution (CVSS 9.8 CRITICAL, EPSS 0.29%).

Why it matters: Critical severity affects widely-deployed security appliances; vendor has released patches with manual mitigations available; unauthenticated attack vector requires no credentials. Not KEV-listed yet, but patch availability and vendor advisory signal active remediation efforts by Check Point.

Where it's seen: Social media dominated by patch announcements and vendor guidance; SecurityWeek coverage; threat radar tracking; minimal technical PoC chatter or in-the-wild exploitation signals detected in posts.

RISK: CRITICAL — Unauthenticated RCE on security gateways; CVSS 9.8; patches available but early in disclosure window.

Generated by claude-haiku-4-5 from public posts and authoritative metadata. AI can make mistakes — verify against vendor advisories before acting. 9/11/2026, 2:03:08 PM

Description

A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.

CVSS 3.1 breakdown

Exploitability 3.9 · Impact 5.9
vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack vector
Network
Complexity
Low
Privileges required
None
User interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Weaknesses