# Policy installation on a Security Gateway running with UPPAK fails with error code 2000240 or 2000267

**Product:** SecureXL, Security Gateways  
**Version:** R81.20  
**OS:** Gaia  
**Last Modified:** 2024-07-01

## Symptoms

- Policy installation on a Security Gateway running User Space SecureXL (UPPAK) fails with error code `2000240` or `2000267`.
- The _/var/log/usim_x86.elg_ contains these messages :
  
  ```
  [UPPAK]:m_get: allocation failure
  
  [UPPAK]:fwk_snd_alloc_mbuf_for_fw: failed to alloc mbuf for fw, vsid: x, instance: y
  [UPPAK]:fwk_snd_msg_queue_dequeue_msg: failed to alloc mbuf for fw, vsid: x, instance: y
  ```
- The output of the `fwaccel stat` command is printed after a long time.
- The _$FWDIR/log/fwk.elg_ contains this message:
  
  ```
  fwmultik_process_entry: no corresponding ipv6 instance for opcode 2, instance 0
  ```
- A traffic outage might occur.
- IPv6 traffic arrives at the Security Gateway while IPv6 is disabled.

## Cause

A memory leak occurred in UPPAK.

## Solution

This problem was fixed. The fix is included in:

- [Jumbo Hotfix Accumulator for R81.20](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20/Default.htm) starting from Take 70.

If you choose not to upgrade, Check Point can supply a **Hotfix**. [Contact Check Point Support](https://www.checkpoint.com/support-services/.contact-support/) to get a Hotfix for this issue.

A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.

For faster resolution and verification, please collect [CPinfo files](http://supportcontent.checkpoint.com/solutions?id=sk92739) from the Security Management Server and Security Gateways involved in the case.

**Hotfix installation instructions:**

Refer to [sk168597 - How to install a Hotfix](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk168597).

#### NOTE

This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.
