Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical Check Point VPN Certificate Flaws Patched

Critical Check Point VPN Certificate Flaws Patched

Posted on September 10, 2026 By CWS

Check Point has announced fixes for two critical vulnerabilities found in its firewall and management products related to VPN certificate handling. These flaws, if exploited, could potentially enable a remote attacker without authentication to execute arbitrary code, although specific conditions for exploitation remain unspecified by the company.

Details of the Vulnerabilities

The first vulnerability, identified as CVE-2026-85102, affects Check Point’s Security Gateways. It involves improper validation during VPN certificate negotiation, posing risks of unauthorized code execution. The second, CVE-2026-85103, is a heap-based buffer overflow occurring during the decoding of VPN certificate structures, impacting both Security Gateways and the Security Management Server.

Both vulnerabilities have been assigned a CVSS score of 9.8, indicating their critical nature. They affect specific versions of Check Point’s Quantum branches, namely R82.10 with Jumbo Hotfix Take 43 or below, R82 with Jumbo Hotfix Take 125 or below, and R81.20 with Jumbo Hotfix Take 165 or below.

Customer Advisory and Response

Check Point disclosed these issues on September 9, immediately rolling out patches. The company reassured that it discovered the flaws internally and found no evidence of them being exploited in real-world attacks. Customers are advised to apply the Check Point Live Patch for automatic protection or the latest available Jumbo Hotfix.

Despite the rollout, some customers reported delays in receiving the updates. Additionally, there were concerns about the mitigation steps for those unable to patch immediately, with some customers seeking clarification on configuration changes needed to deactivate implied rules for VPNs.

Historical Context and Industry Impact

This isn’t the first time Check Point has had to address critical vulnerabilities in its products. Earlier this year, the company patched other significant flaws, including CVE-2026-50751 and CVE-2026-16232, which were reportedly already being exploited. These patches were critical in safeguarding against authentication bypasses within their Remote Access VPN and Security Management systems.

Check Point has yet to release specific indicators of compromise related to these new flaws, as there is no current evidence of active exploitation. The company continues to provide guidance through advisories sk1000117 and sk1000118 for affected products and remediation steps.

As the cybersecurity landscape evolves, it is crucial for organizations using Check Point products to stay updated with the latest patches and advisories to protect their systems from potential threats.

The Hacker News Tags:Check Point, Check Point advisories, CVE, cyber threats, Cybersecurity, Firewall, IT security, network security, RCE vulnerabilities, remote code execution, security patches, VPN vulnerabilities, vulnerability patching

Post navigation

Previous Post: Critical Vulnerabilities in Check Point VPN Fixed
Next Post: Fraudulent Apps Exploit Google Play’s Early Access Program

Related Posts

Android Malware Operations Merge Droppers, SMS Theft, and RAT Capabilities at Scale Android Malware Operations Merge Droppers, SMS Theft, and RAT Capabilities at Scale The Hacker News
PowMix Botnet Targets Czech Workforce with Stealth Tactics PowMix Botnet Targets Czech Workforce with Stealth Tactics The Hacker News
Zimbra Zero-Day Exploited to Target Brazilian Military via Malicious ICS Files Zimbra Zero-Day Exploited to Target Brazilian Military via Malicious ICS Files The Hacker News
Dell RecoverPoint VMs Vulnerability Exploited Since 2024 Dell RecoverPoint VMs Vulnerability Exploited Since 2024 The Hacker News
AI Hacking, Chrome Vulnerabilities, SonicWall Attacks AI Hacking, Chrome Vulnerabilities, SonicWall Attacks The Hacker News
Shai-Hulud v2 Campaign Spreads From npm to Maven, Exposing Thousands of Secrets Shai-Hulud v2 Campaign Spreads From npm to Maven, Exposing Thousands of Secrets The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Critical LiteLLM Vulnerability Risks Cloud Security
  • Fraudulent Apps Exploit Google Play’s Early Access Program
  • Critical Check Point VPN Certificate Flaws Patched
  • Critical Vulnerabilities in Check Point VPN Fixed
  • NetScaler Flaw Exploited in Cyberattacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Critical LiteLLM Vulnerability Risks Cloud Security
  • Fraudulent Apps Exploit Google Play’s Early Access Program
  • Critical Check Point VPN Certificate Flaws Patched
  • Critical Vulnerabilities in Check Point VPN Fixed
  • NetScaler Flaw Exploited in Cyberattacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark