CVE-2024-24911
Severity CVSS v4.0:
Pending analysis
Type:
CWE-125
Out-of-bounds Read
Publication date:
06/02/2025
Last modified:
15/10/2025
Description
In rare scenarios, the cpca process on the Security Management Server / Domain Management Server may exit unexpectedly, creating a core dump file. When the cpca process is down, VPN and SIC connectivity issues may occur if the CRL is not present in the Security Gateway's CRL cache.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:checkpoint:gaia_os:r81:*:*:*:*:*:*:* | ||
| cpe:2.3:o:checkpoint:gaia_os:r81.10:*:*:*:*:*:*:* | ||
| cpe:2.3:o:checkpoint:gaia_os:r81.20:*:*:*:*:*:*:* | ||
| cpe:2.3:o:checkpoint:gaia_os:r82:*:*:*:*:*:*:* | ||
| cpe:2.3:h:checkpoint:multi-domain_management:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:checkpoint:quantum_security_management:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



