If your Check Point Security Management or Log Server runs an affected release, apply Check Point’s CVE-2026-91843 LivePatch and verify it is installed. Check the installed release and hotfix take against the affected-version list, then use Check Point’s current instructions in security knowledge article sk1000155. If you cannot patch immediately, restrict web-interface access to trusted clients as a temporary mitigation—not as proof that the vulnerability is fixed.
What is CVE-2026-91843?
CVE-2026-91843 is a stack-based buffer overflow in the unauthenticated login process for Check Point Security Management and Log Servers. Check Point’s CVE record classifies it as CWE-121 and says a remote attacker could potentially execute arbitrary code with root privileges. The vulnerability is network-reachable and requires neither prior privileges nor user interaction.
Check Point assigns the flaw a CVSS v3.1 base score of 9.8 (Critical), with vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H. The vector reflects high potential impacts to confidentiality, integrity, and availability. Check Point’s CVE record describes the vulnerability and score.
Which Check Point systems are affected?
Check the product role, release, and installed Jumbo Hotfix take together. The Canadian Centre for Cyber Security lists the following affected configurations for Security Management Server, Multi-Domain Security Management Server, Log Server, and Multi-Domain Log Server:
Crashes, No Sound, or Screen Glitches?
Random freezes, missing sound and display glitches usually trace back to one bad driver. Find and replace yours safely.Free scan · under a minutePC Slower Than It Used to Be?
A free scan shows the junk files, broken settings and background clutter dragging Windows down - then fixes them in one click.Free scan · Windows 10 & 11#1 Best Overall
- More Secured Server Mounting Setup: RM-CP-T4 by Rackmount.IT IU rack mount kits have dedicated slots to safely install compatible Check Point models, including Check Point 3100, 3200, 3600, and 3800.
- Improves Cable Management: All console ports of the Check Point appliance are brought to the front for easy access and user convenience — all while preventing overheating with custom-made cut-outs.
- Straightforward Installation Process: Mounting your appliance to a 19 inch shelf only takes 2-5 mins. as our network tray kits have everything a user needs — bolts, hex keys, zip ties, port labels, cables, and an assembly guide.
- Suitable for Any Type of Business: Our 1U rack shelf kits are designed to fit your appliance in 19-inch network rack shelves, making them ideal for small business owners, large corporations, and government agencies looking to improve their cloud management and network connectivity.
- Passionate for Smart Design and Customization: Rackmount.IT offers innovative solutions to common user needs by producing high-quality custom rack mounted shelf with excellent features that support major desktop appliance manufacturers.
| Release | Affected threshold |
|---|---|
| R81.20 | Jumbo Hotfix Take 166 or earlier |
| R82 | Take 126 or earlier |
| R82.10 | Take 44 or earlier |
| R82.20 | Affected; the cited Canadian advisory does not specify a take threshold |
The Canadian advisory gives these release thresholds. CERT.LV also identifies R81.10 Take 190 or earlier and older R80 through R81 releases as affected; several of those older releases are marked end of support. Check CERT.LV’s notice and the vendor advisory for applicability to your exact release. Check Point’s CVE record also lists older releases.
How to patch CVE-2026-91843
- Confirm the installed release and take. Identify whether the appliance has a listed Security Management or Log Server role, including multi-domain variants, and compare its release and take with the affected configurations.
- Read Check Point’s current remediation instructions. The vendor directs customers to the LivePatch fix in sk1000155. Follow its instructions and confirm the fix applies to your installed release before making changes.
- Install the applicable LivePatch. CERT.LV lists these fixed takes: R82.20 Take 29, R82.10 Take 28, R82 Take 28, and R81.20 Take 28. Because version-specific remediation can change, confirm the correct fix in Check Point’s current advisory rather than treating this list as a substitute for vendor instructions.
- Verify the CVE-specific patch. After installation, run
cplp listand check that the installed patch comment identifies CVE-2026-91843, as CERT.LV advises. If the expected comment is absent or the status is unclear, contact Check Point Support or a Check Point representative.
What to do if you cannot patch immediately
Restrict the management web interface to known, specific internal IP addresses using Trusted Clients settings. Check Point and CERT.LV recommend trusted-client restrictions to reduce exposure while updates cannot be applied. Use this only as a temporary access-control mitigation: it does not install the LivePatch or establish that the vulnerable code has been fixed.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.What Check Point has said about exploitation
In its September 2026 CheckMates notification, Check Point stated: “At this time, there is no indication that this vulnerability has been exploited in the wild.” That is the vendor’s assessment at the time of that notice, not a guarantee about later activity. The same notification describes the flaw as potentially allowing unauthenticated remote code execution with root privileges through the login process. Read Check Point’s notification.
Quick Recap
Best Value
- New Global 12V AC / DC Adapter Compatible with Check Point L-50W SG-80A 8-Port Gigabit Firewall Appliance CheckPoint L50W SG80A 12V/2.5A 12VDC 2A 2.5A DC12V 2000mA 2500mA 12.0V 2.0A 2.5 A 12 V 2 A 12.0 VDC 2500 mA Switching Power Supply Cord Cable PS Charger Mains PSU
- Compatible with: Check Point L-50 SG-80A L50 Router 8-Port Gigabit Firewall Appliance 12V/2A 12VDC 2A Power Supply
- Compatible with: Granger GB24 GB-24 Full HDTV Audio system HD home theater System 12V 2.5A Power Supply
- Tested Units. In Great Working Condition.
Rank #4
- World Wide Input Voltage 100-240VAC 50/60Hz. OVP, OCP, SCP Protection (OVP: Over Voltage output Protection. OCP: Over Current output Protection. SCP: Short Circuit output Protection) Tested Units. In Great Working Condition.
- Kircuit New Global 12V AC / DC Adapter Compatible with Check Point L-50W SG-80A 8-Port Gigabit Firewall Appliance CheckPoint L50W SG80A 12V/2.5A 12VDC 2A 2.5A DC12V 2000mA 2500mA 12.0V 2.0A 2.5 A 12 V 2 A 12.0 VDC 2500 mA Switching Power Supply Cord Cable PS Charger Mains PSU
- Compatible with: Check Point L-50 SG-80A L50 Router 8-Port Gigabit Firewall Appliance 12V/2A 12VDC 2A Power Supply
- Compatible with: Granger GB24 GB-24 Full HDTV Audio system HD home theater System 12V 2.5A Power Supply
Rank #3
- DESIGNED FOR CHECK POINT 1575: Custom-fit rack mount kit for 1575, 1575W, 1595, 1595W, and 9 more.
- QUICK 3-MINUTE SETUP: Slide your device into the kit, secure with retainers, connect included cables — no tools required.
- FRONT-FACING CONNECTIONS: All ports, cables, and indicators remain fully accessible from the front for easy management.
- SECURED POWER SUPPLY: The power supply is fixed to the rack kit, preventing accidental disconnection and ensuring uninterrupted operation.
- 1U RACK UNIT: Fits standard 19-inch EIA-310 racks. Color: Jet Black.
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.
The Tool Desk
Outbyte PC Repair FREEClear out junk files and repair common Windows errorsFree Scan →Outbyte Driver Updater FREEScan for outdated or missing drivers - takes under a minuteDriver Scan →

