Description
An out-of-bounds read vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Fireware OS 2026.2.2, Fireware OS 12.12.2, Fireware OS 12.5.20
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://psirt.watchguard.com/CVE-2026-19317 |
|
History
Thu, 27 Aug 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An out-of-bounds read vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic. | |
| Title | Fireware OS Pre-Authentication Out-of-Bounds Read in iked Allows Denial of Service (DoS) | |
| First Time appeared |
Watchguard
Watchguard fireware Os |
|
| Weaknesses | CWE-125 CWE-191 |
|
| CPEs | cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Watchguard
Watchguard fireware Os |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: WatchGuard
Published:
Updated: 2026-08-27T23:24:33.131Z
Reserved: 2026-08-07T20:06:02.743Z
Link: CVE-2026-19317
No data.
Status : Received
Published: 2026-08-28T02:16:20.947
Modified: 2026-08-28T02:16:20.947
Link: CVE-2026-19317
No data.
OpenCVE Enrichment
Updated: 2026-08-28T05:45:04Z