Description
A double-free vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic.
Published: 2026-08-27
Score: 8.7 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

This vulnerability is a double‑free flaw in the iked process of Fireware OS. The flaw allows an attacker to send crafted packets that cause a memory corruption, leading to a crash of the VPN service and a denial of service condition. The weakness is categorized as CWE‑415 (Double Free) and CWE‑416 (Use After Free) and would make the device unable to handle VPN traffic until it is restarted or the firmware is fixed.

Affected Systems

The affected vendor is WatchGuard. All deployments running the Fireware OS firmware that do not have the latest releases listed in the vendor advisory—specifically the 2026‑2.2, 12‑12.2 or 12‑5.20 patch releases—are vulnerable. The problem resides in the iked VPN daemon and does not require privilege escalation beyond network access to the device.

Risk and Exploitability

The CVSS score for this issue is 8.7 and the EPSS score is not available, indicating a high severity but lacking a current likelihood estimate. The vulnerability is not yet listed in the CISA KEV catalog, but the attack vector is remote, unauthenticated, and possible over the network. An attacker could trigger the DoS by sending malicious packets to the iked service without authentication, potentially disrupting VPN service for all users connected to the affected device.

Generated by OpenCVE AI on August 28, 2026 at 06:39 UTC.

Remediation

Vendor Solution

Fireware OS 2026.2.2, Fireware OS 12.12.2, Fireware OS 12.5.20


OpenCVE Recommended Actions

  • Upgrade the device to Fireware OS 2026.2.2, 12.12.2 or 12.5.20 as applicable.
  • Monitor device logs and network traffic for signs of repeated DoS attempts and ensure continued VPN availability after patch.
  • Apply temporary network‑level mitigation by throttling or blocking traffic to the iked service until the patch is applied to reduce DoS impact.

Generated by OpenCVE AI on August 28, 2026 at 06:39 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 27 Aug 2026 18:00:00 +0000

Type Values Removed Values Added
Description A double-free vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic.
Title Fireware OS Pre-Authentication Double Free in iked Allows Denial of Service (DoS)
First Time appeared Watchguard
Watchguard fireware Os
Weaknesses CWE-415
CWE-416
CPEs cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:*
Vendors & Products Watchguard
Watchguard fireware Os
References
Metrics cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Watchguard Fireware Os
cve-icon MITRE

Status: PUBLISHED

Assigner: WatchGuard

Published:

Updated: 2026-08-27T23:24:32.683Z

Reserved: 2026-08-07T20:05:58.083Z

Link: CVE-2026-19316

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-28T02:16:20.827

Modified: 2026-08-28T02:16:20.827

Link: CVE-2026-19316

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-28T06:45:04Z

Weaknesses