WatchGuard「Fireware OS」に深刻な脆弱性 - 緊急対応を呼びかけ
これら4件はいずれも共通脆弱性評価システム「CVSSv4.0」のベーススコアが「9.3」、重要度は「クリティカル(Critical)」と評価されている。
のこる7件についてもCVSS基本値が「8.7」または「8.6」とされており、重要度は2番目に高い「高(High)」と評価されている。アドバイザリの公表時点で、脆弱性の悪用については確認されていない。
今回のアップデートで対処した脆弱性は以下のとおり。なお、同社は同日、以前のアップデートで対処済みだった「CVE-2026-81851」についてもアドバイザリを公開している。
CVE-2026-13086
CVE-2026-19313
CVE-2026-19314
CVE-2026-19315
CVE-2026-19316
CVE-2026-19317
CVE-2026-19318
CVE-2026-78008
CVE-2026-78009
CVE-2026-78010
CVE-2026-78011
(Security NEXT - 2026/08/28 )
ツイート
関連リンク
- WatchGuard:CVE-2026-19315 Fireware OS Pre-Authentication Type Confusion in iked Allows Remote Code Execution
- WatchGuard:CVE-2026-78011 Fireware OS Integer Underflow in Iked Allows Unauthenticated Denial of Service (DoS)
- WatchGuard:CVE-2026-19314 Fireware OS Integer Underflow in iked Allows Unauthenticated Denial of Service (DoS)
- WatchGuard:CVE-2026-19317 Fireware OS Pre-Authentication Out-of-Bounds Read in iked Allows Denial of Service (DoS)
- WatchGuard:CVE-2026-78010 Fireware OS Stack-Based Buffer Overflow in iked Allows Unauthenticated Denial of Service
- WatchGuard:CVE-2026-13086 Fireware OS Stack-Based Buffer Overflow in Mobile Security epm Endpoint
- WatchGuard:CVE-2026-19318 Fireware OS Pre-Authentication Stack Buffer Overflow in iked Allows Remote Code Execution
- WatchGuard:CVE-2026-78009 Fireware OS Out-of-Bounds Read in iked Allows Unauthenticated Denial of Service (DoS)
- WatchGuard:CVE-2026-19316 Fireware OS Pre-Authentication Double Free in iked Allows Denial of Service (DoS)
- WatchGuard:CVE-2026-78008 Fireware OS Authenticated Buffer Overflow in wgagent
- WatchGuard:CVE-2026-19313 Fireware OS Pre-Authentication Heap Buffer Overflow in iked Allows Remote Code Execution
- WatchGuard:CVE-2026-81851 Fireware OS Heap-Based Buffer Overflow in iked Allows Denial of Service
- ウォッチガード・テクノロジー・ジャパン
PR
関連記事
GitLab、セキュリティアップデートで脆弱性7件を解消
HPE「Fabric Composer」に深刻な脆弱性 - アップデートを強く推奨
Mozilla、「Firefox 155」公開 - 脆弱性29件に対応
「Chrome」にセキュリティ更新、脆弱性26件を修正 - 「Critical」2件
「SonicWall SMA 1000」に深刻な脆弱性 - 悪用を示す事例も
「Google Cloud Build」にRCE脆弱性 - 6月に修正済み
「Dell PowerStore」のアドバイザリ更新 - アップデート対象を拡大
印刷管理ソフト「PaperCut NG/MF」に深刻な脆弱性 - 悪用も確認
「Langflow」に複数の深刻な脆弱性 - 修正版が公開
Adobe、セキュリティアドバイザリ7件を公開 - 6件がクリティカル

