← Back to CVE List
CVE-2026-86133NVD
Vulnerability Summary
An integer underflow vulnerability in the WatchGuard Fireware OS IKE daemon (iked) allows a remote attacker who has completed the initial IKEv2 handshake to crash the iked process by sending a specially crafted encrypted IKEv2 message, resulting in a denial of service.
CVSS v4.0 Base Metrics — Score 8.2 (HIGH)
Attack VectorNetwork
Attack ComplexityLow
Attack RequirementsPresent
Privileges RequiredNone
User InteractionNone
Confidentiality (Vulnerable System)None
Integrity (Vulnerable System)None
Availability (Vulnerable System)High
Confidentiality (Subsequent System)None
Integrity (Subsequent System)None
Availability (Subsequent System)None
Affected & Patched Versions
- WatchGuard Fireware OS >= 2026.3 and < 2026.3.2
- WatchGuard Fireware OS >= 2025.0 and < 2026.2.3
- WatchGuard Fireware OS >= 12.0 and < 12.12.3
- WatchGuard Fireware OS >= 12.0 and < 12.5.21
- WatchGuard Fireware OS 2026.3.2
- WatchGuard Fireware OS 2026.2.3
- WatchGuard Fireware OS 12.12.3
- WatchGuard Fireware OS 12.5.21