CVE-2025-11838
WatchGuard Firebox iked Memory Corruption Vulnerability
CVSS Score
0.0
EPSS Score
0.5%
EPSS Percentile
37th
A memory corruption vulnerability in WatchGuard Fireware OS may allow an unauthenticated attacker to trigger a Denial of Service (DoS) condition in the Mobile User VPN with IKEv2 and the Branch Office VPN using IKEv2 when configured with a dynamic gateway peer.
| CWE | CWE-763 |
| Vendor | watchguard |
| Product | fireware os |
| Published | Dec 4, 2025 |
| Last Updated | Aug 10, 2026 |
Stay Ahead of the Next One
Get instant alerts for watchguard fireware os
Be the first to know when new unknown vulnerabilities affecting watchguard fireware os are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
WatchGuard / Fireware OS
2025.1 โค 2025.1.3 12.6.1 โค 12.11.5
References
Credits
McCaulay Hudson (@_McCaulay) of watchTowr