> Source: [sk178411](https://support.checkpoint.com/results/sk/sk178411)

# sk178411 - Check Point Response to CVE-2022-0778 - possible infinite loop when parsing ECDSA certificates/keys in OpenSSL

| Property | Value |
|----------|-------|
| Solution ID | sk178411 |
| Date Created | 2022-03-16 |
| Last Modified | 2025-02-09 |
| Technical Level | General |
| Products | Security Gateway, Scalable Platforms, Security Management Server, Cloud Firewall, Multi-Domain Security Management Server |
| Versions | R81.10 (EOS), R81 (EOS), R81.10 (EOS), R81 (EOS), R81.10 (EOS), R81 (EOS), R81 (EOS), R81.10 (EOS), R81 (EOS), R81.10 (EOS) |

## Symptoms

- * A vulnerability was found in OpenSSL, making it possible to trigger an infinite loop by crafting a certificate with invalid explicit curve parameters. Because certificate parsing occurs before verification of the certificate signature, a process that parses an externally supplied certificate could be subject to a denial of service attack.

  For more information, refer to [CVE-2022-0778](https://www.cve.org/CVERecord?id=CVE-2022-0778).
* The indications of the issue are:

  * High CPU utilization
  * Stuck processes and services

## Solution

This problem was fixed. The fix is included starting from:

* [Jumbo Hotfix Accumulator for R81.10](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk175186) starting from Take 44
* [Jumbo Hotfix Accumulator for R81](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk170114) starting from Take 65
* [Jumbo Hotfix Accumulator for R80.40](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk165456) starting from Take 156
* [Jumbo Hotfix Accumulator for R80.30](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk153152) starting from Take 251
* [Jumbo Hotfix Accumulator for R80.20](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk137592) starting from Take 208

Hotfixes for OpenSSL CVE-2022-0778 are provided on top of:

* [R81.10](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122170) Jumbo Hotfix Accumulator General Availability Take 30
* [R81](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122171) Jumbo Hotfix Accumulator General Availability Take 58 and Take 60
* [R80.40](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122172) Jumbo Hotfix Accumulator General Availability Take 154
* [R80.30 Gateway with Gaia 3.10](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122173) Jumbo Hotfix Accumulator General Availability Take 246
* [R80.30](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122174) Jumbo Hotfix Accumulator General Availability Take 246
* [R80.20](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122176) Jumbo Hotfix Accumulator General Availability Take 205

<!-- -->

* [R80.30SP](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122178) Jumbo Hotfix Accumulator General Availability Take 97
* [R80.20SP](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122179) Jumbo Hotfix Accumulator General Availability Take 317

<!-- -->

* [Quantum Spark 1500 Appliances](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122180)
* [Quantum Spark 1600/1800 appliances](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122181)   

* [Quantum Edge Upgrade](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122182)
* [Quantum Edge Clean Install](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122183)   

* [CloudGuard Network for AWS (GWLB) R80.40](https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.DCFileAction&eventSubmit_doGetdcdetails=&fileid=122263)

Refer to [sk168597 - How to install a Hotfix](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk168597).  

**Notes:**

* Check Point is working on new Jumbo Hotfix Accumulators with a fix for this issue. This SecureKnowledge article will be updated accordingly.
* This issue does not apply to SMB appliances running Gaia Embedded R77.20.xx.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
