> Source: [sk182376](https://support.checkpoint.com/results/sk/sk182376)

# sk182376 - Interim preventative measure (VPNF) for CVE-2024-24919

| Property | Value |
|----------|-------|
| Solution ID | sk182376 |
| Date Created | 2024-06-05 |
| Last Modified | 2024-11-10 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R81.20, R81.10 (EOS), R81 (EOS) |

## Solution

|--------------------------------------------------------------------------------------------------------------|--------------------------------------------------------|
| * **Availability and Installation Instructions** * **Checking if the Auto Update Security fix is installed** | * **Frequently Asked Questions** * **Troubleshooting** |

<br />

Overview {#Overview}
--------------------

Security Gateways configured to Check Point's Auto Update process are gradually receiving an update (as of June 2, 2024), which helps protect them from various attempts to exploit CVE-2024-24919. This is an interim preventative measure until the Hotfix is fully installed on customers' Security Gateways. **It is important to emphasize that installing the Hotfix is the best way to stay protected from this vulnerability.**   
This article outlines manual installation instructions for customers who are not subscribed to the Auto Updates process.  

Availability {#Availability}
----------------------------

|----------------------|------------|------------------|------------------------------------------------------------------------------------------------------------------------------------------------------|
| **Release Type**     | **Take #** | **Release Date** | **Offload Package Link**                                                                                                                             |
| **Recommended Take** | **21**     | 05 June 2024     | [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk157492/download-m1907081212.png)](https://support.checkpoint.com/results/download/133190)(TAR) |

<br />

<br />

### **Installation Instructions** {#Installation Instructions}

On the Security Gateway, run:

`autoupdatercli install `<Full Path to the TAR Package>

**Important Note:** The Auto Update Security fix installation **does not** require reboot or restart of Check Point services.

Checking if the Auto Update Security fix is installed on the Security Gateway {#Checking if the Auto Update Security fix is installed}
--------------------------------------------------------------------------------------------------------------------------------------

Run this command from the Expert mode to ensure the that Take is 21 or higher is installed:

`# cpinfo -y all | grep "BUNDLE_GENERAL_AUTOUPDATE"`   

The expected output is:  
`This is Check Point CPinfo Build 914000231 for GAIA `  
` BUNDLE_GENERAL_AUTOUPDATE Take: 21`

Frequently Asked Questions {#Frequently Asked Questions}
--------------------------------------------------------

* **What does the VPNF security update actually do?** This update introduced a new VPNF process that captures and prevents attempts to execute path traversal. Once installed, the VPNF security update is enabled by default.  

* **Which software versions are supported?** VPNF Security update is supported on Security Gateway versions R80.40 and higher.  

* **Is there a performance or memory impact?** This process does not have performance impact and memory consumption overhead.   

* **Is the issue relevant in R82?** R82 contains an integrated solution.  

Troubleshooting {#Troubleshooting}
----------------------------------

* **To double-check that the VPNF process is running** , from the command line, run:  
  `# ps -ef | grep vpnf`  

  The expected output is:   
  `admin 29362 11157 0 20:42 ? 00:00:00 /opt/vpnf/bin/vpnf-3.10.0-1160.15.2cpx86_64`

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
