New Check Point flaw lets hackers execute code with root privileges

New Check Point flaw lets hackers execute code with root privileges
Check Point Software has issued security updates for CVE-2026-91843, a critical stack-based buffer overflow flaw that can allow unauthenticated attackers to achieve root remote code execution on Security Management Server and Log Server systems. The company has also shared mitigation steps and detection guidance, while noting that its recently patched CVE-2026-85102 and CVE-2026-85103 vulnerabilities are considered likely to face exploitation attempts soon. #CheckPoint #CVE-2026-91843 #CVE-2026-85102 #CVE-2026-85103 #NCSC-NL #Qilin

Keypoints

  • CVE-2026-91843 is a critical buffer overflow in Check Point login processing.
  • The flaw can lead to root remote code execution on management systems.
  • Security Management Server and Log Server instances are affected.
  • Check Point provided temporary mitigation and detection guidance for defenders.
  • Recent critical flaws CVE-2026-85102 and CVE-2026-85103 may soon be targeted.

Read More: https://www.bleepingcomputer.com/news/security/check-point-warns-critical-flaw-lets-hackers-execute-code-as-root/