WatchGuard Firebox iked Out of Bounds Write Vulnerability
Prioritize patching. It under exploitation confirmed by CISA and has a public proof of concept.
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
A memory error in WatchGuard Firebox VPN software allows an attacker on the network to write data outside allocated memory, potentially taking over the device. This affects VPN connections used for remote workers and branch office access.
An out-of-bounds write vulnerability in the iked daemon of Fireware OS affects Mobile User VPN and Branch Office VPN implementations using IKEv2 with dynamic gateway peers. Remote, unauthenticated attackers can exploit improper buffer handling to execute arbitrary code with device privileges; vulnerable versions include 11.10.2–11.12.4_Update1, 12.0–12.11.3, and 2025.1.