๐Ÿ” CVE Alert

CVE-2025-11838

UNKNOWN 0.0

WatchGuard Firebox iked Memory Corruption Vulnerability

CVSS Score
0.0
EPSS Score
0.5%
EPSS Percentile
37th

A memory corruption vulnerability in WatchGuard Fireware OS may allow an unauthenticated attacker to trigger a Denial of Service (DoS) condition in the Mobile User VPN with IKEv2 and the Branch Office VPN using IKEv2 when configured with a dynamic gateway peer.

CWE CWE-763
Vendor watchguard
Product fireware os
Published Dec 4, 2025
Last Updated Aug 10, 2026
Stay Ahead of the Next One

Get instant alerts for watchguard fireware os

Be the first to know when new unknown vulnerabilities affecting watchguard fireware os are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

WatchGuard / Fireware OS
2025.1 โ‰ค 2025.1.3 12.6.1 โ‰ค 12.11.5

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
psirt.watchguard.com: https://psirt.watchguard.com/CVE-2025-11838 watchguard.com: https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00018

Credits

McCaulay Hudson (@_McCaulay) of watchTowr