sk183101 - Check Point Response to CVE-2024-24911 - Out of Bounds read in the CPCA process on a Check Point Management Server

Check Point Response to CVE-2024-24911 - Out of Bounds read in the CPCA process on a Check Point Management Server

Please read this important update from Check Point.

Security Alert:

Product: Multi-Domain Security Management, Security Management
Version: R81 (EOS), R81.10 (EOS), R81.20, R82
OS: Gaia
Last Modified: 2025-02-10

Symptoms

This issue received the ID CVE-2024-24911.

Cause

An Out-of-Bounds read may occur when processing certain HTTP "POST" requests to the Security Management Server / Domain Management Server to the TCP port 18264.

Repeated requests can cause a denial-of-service (DoS) of the cpca process and may lead it to exit unexpectedly with a core dump file.

Solution

This problem was fixed on the Check Point Management Server.

The fix is included starting from:

NOTE

This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.

Article Properties