보안 뉴스 · 업데이트
2026-012: Critical Vulnerabilities in Check Point Products
출처: CERT-EU · © Cybersecurity Service for the Union institutions, bodies, offices and agencies (CERT-EU). · CC BY 4.0
문서 서식과 링크를 FineTS 화면에 맞게 정리했습니다. 이미지·첨부파일은 공식 원문에서 확인하세요.
| 취약점 | 설명 | 조치사항 |
|---|---|---|
| CVE-2026-85102 |
Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote attacker to execute arbitrary code on the Gateway. |
조치사항 확인이 필요합니다. |
| CVE-2026-85103 |
A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems. |
조치사항 확인이 필요합니다. |
자동 한국어 번역
영문 원문을 FineTS가 한국어로 자동 번역한 내용입니다. 번역 과정에서 표현 차이나 오류가 있을 수 있습니다.
번역 시각: 2026. 09. 14. 14:56 KST · 기준 원문 수집: 2026. 09. 12. 18:31 KST
9 9 월 2026, Check Point는 Check Point Security Gateway, Security Management Server 및 Spark Firewall 배포에 영향을 미치는 두 치명적 취약점을 해결하는 비상 보안 업데이트를 발표했습니다. 영향을받는 배포는 Remote Access VPN 또는 Site-to-Site VPN을 사용하도록 구성됩니다. 취약점 모두 CVSS s를 수행
역사:
- 10/09/2026 --- v1.0 -- 처음 발행
개요
9 9 월 2026, Check Point는 Check Point Security Gateway, Security Management Server 및 Spark Firewall 배포에 영향을 미치는 두 치명적 취약점을 해결하는 비상 보안 업데이트를 발표했습니다. 영향을받는 배포는 Remote Access VPN 또는 Site-to-Site VPN [1,2]를 사용하도록 구성됩니다. 둘 다 취약점에는 9.8의 CVSS 점수가 있고 영향을받는 기구 [1,2]에 임의 코드를 실행하기 위하여 인증되지 않은 원격 공격자를 허용할 수 있었습니다.
CERT-EU는 가능한 한 빨리 사용할 수있는 핫픽스를 적용하는 것이 좋습니다. 인터넷에 노출된 및 네트워크 경계 장비에 우선 순위를 부여하십시오.
기술 상세
취약점 CVE-2026-85102에는 9.8의 CVSS 점수가 있습니다. Check Point Security Gateway의 VPN 협상 흐름에 인증서 데이터 검증 부적절 취약점입니다. 이 취약점은 영향을받는 어플라이언스 [1]에서 임의 코드을 실행하기 위해 인증되지 않은 원격 공격자을 허용합니다. 문제는 Site-to-Site VPN 또는 Remote Access VPN [1]를 사용하여 배포에 영향을 미칩니다.
취약점 CVE-2026-85103에는 9.8의 CVSS 점수가 있습니다. Check Point Security Gateway 및 Security Management Server의 VPN 인증서 ASN.1 디코딩 흐름에 힙 오버플로 취약점입니다. 이 취약점은 영향을받는 어플라이언스 [2]에서 임의 코드을 실행하기 위해 원격 공격자을 허용합니다. CVE-2026-85102와는 달리, 이 취약성은 Security Gateway와 Security Management Server [2] 둘 다에 영향을 미칩니다.
영향받는 제품
다음 Check Point 제품 및 버전은 영향을받습니다 [1,2]:
- Check Point Security Gateway - R80, R80.10, R80.20, R80.30, R80.40 (지원 종료)
- Check Point Security Gateway - R81, R81.10 (지원 종료)
- Check Point Security Gateway — R81.10.X
- Check Point Security Gateway — R81.20
- Check Point Security Gateway — R82
- Check Point Security Gateway — R82.00.X
- Check Point Security Gateway — R82.10
- Check Point Security Management Server - 위의 모든 버전
- Check Point Spark Firewall (중앙 관리 및 로컬 관리) - 위의 모든 버전
CVE-2026-85102의 악용은 Remote Access VPN 또는 Site-to-Site VPN [1]로 구성되는 배포를 요구합니다. CVE-2026-85103의 악용는 이러한 구성 [2]에서 Security Management Server에 추가로 영향을 미칩니다.
추가 정보는 공급업체의 자문 [1,2]에서 확인할 수 있습니다.
권고 사항
CERT-EU는 영향을받은 Check Point 제품을 실행하는 모든 조직이 즉시 사용할 수있는 핫픽스를 적용한다는 것을 강력하게 권장합니다 [1].
참고 자료
On 9 September 2026, Check Point released emergency security updates addressing two critical vulnerabilities affecting Check Point Security Gateway, Security Management Server, and Spark Firewall deployments configured to use Remote Access VPN or Site-to-Site VPN. Both vulnerabilities carry a CVSS s
History:
- 10/09/2026 --- v1.0 -- Initial publication
Summary
On 9 September 2026, Check Point released emergency security updates addressing two critical vulnerabilities affecting Check Point Security Gateway, Security Management Server, and Spark Firewall deployments configured to use Remote Access VPN or Site-to-Site VPN [1,2]. Both vulnerabilities carry a CVSS score of 9.8 and could allow an unauthenticated, remote attacker to execute arbitrary code on affected appliances [1,2].
CERT-EU strongly recommends applying the available hotfixes as soon as possible, prioritising internet-facing and perimeter appliances.
Technical Details
The vulnerability CVE-2026-85102, with a CVSS score of 9.8, is an improper certificate-data validation vulnerability in the VPN negotiation flow of Check Point Security Gateway that allows an unauthenticated, remote attacker to execute arbitrary code on the affected appliance [1]. The issue affects deployments using either Site-to-Site VPN or Remote Access VPN [1].
The vulnerability CVE-2026-85103, with a CVSS score of 9.8, is a heap overflow vulnerability in the VPN certificate ASN.1 decoding flow of Check Point Security Gateway and Security Management Server that allows a remote attacker to execute arbitrary code on the affected appliance [2]. Unlike CVE-2026-85102, this vulnerability affects both the Security Gateway and the Security Management Server [2].
Affected Products
The following Check Point products and versions are affected [1,2]:
- Check Point Security Gateway — R80, R80.10, R80.20, R80.30, R80.40 (End of Support)
- Check Point Security Gateway — R81, R81.10 (End of Support)
- Check Point Security Gateway — R81.10.X
- Check Point Security Gateway — R81.20
- Check Point Security Gateway — R82
- Check Point Security Gateway — R82.00.X
- Check Point Security Gateway — R82.10
- Check Point Security Management Server — all versions listed above
- Check Point Spark Firewall (Centrally Managed and Locally Managed) — all versions listed above
Exploitation of CVE-2026-85102 requires the deployment to be configured with either Remote Access VPN or Site-to-Site VPN [1]. Exploitation of CVE-2026-85103 additionally affects the Security Management Server in such configurations [2].
Additional information is available in the vendor's advisories [1,2].
Recommendations
CERT-EU strongly recommends that all organisations running affected Check Point products apply the available hotfixes immediately [1].