Impact
WatchGuard Fireware OS contains an out‑of‑bounds read in the iked daemon that causes the process to crash when it receives specially crafted VPN packets. The flaw is triggered by an unauthenticated network attacker and results in a denial of service that disrupts VPN processing and connectivity for all users of the affected device.
Affected Systems
The vulnerability applies to the WatchGuard Fireware OS product line, specifically versions addressed in the vendor’s fix: 2026.2.2, 12.12.2, and 12.5.20.
Risk and Exploitability
With a CVSS score of 8.7 the flaw poses a high severity risk. EPSS information is not available, and the vulnerability is not listed in CISA’s KEV catalog, suggesting no known widespread exploitation yet. The attack vector is remote and does not require authentication, so any attacker with network access to the VPN endpoint could send the truncated packets and force a service halt.
OpenCVE Enrichment