> Source: [sk92447](https://support.checkpoint.com/results/sk/sk92447)

# sk92447 - Check Point response to OpenSSL CVEs 

| Property | Value |
|----------|-------|
| Solution ID | sk92447 |
| Date Created | 2013-03-07 |
| Last Modified | 2026-08-12 |
| Technical Level | General |
| Products | Security Gateway, Security Management Server, Cloud Firewall |
| Versions | R82.10, R82, R81.20, R82.10, R82, R81.20, R82.10, R82.20, R81.20, R82 |

## Solution

This article applies to ***all*** Check Point software products, unless stated otherwise for specific CVE.

Note: This article does not list all the known CVEs for OpenSSL - only those that were explicitly checked by Check Point.

|--------------------------------------------------------------------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| CVE                                                                                  | Comment                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| **2026**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2026-42764](https://www.cve.org/CVERecord?id=CVE-2026-42764)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-34183](https://www.cve.org/CVERecord?id=CVE-2026-34183)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-42771](https://www.cve.org/CVERecord?id=CVE-2026-42771)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-42765](https://www.cve.org/CVERecord?id=CVE-2026-42765)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-35188](https://www.cve.org/CVERecord?id=CVE-2026-35188)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-34180](https://www.cve.org/CVERecord?id=CVE-2026-34180)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-45447](https://www.cve.org/CVERecord?id=CVE-2026-45447)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-34182](https://www.cve.org/CVERecord?id=CVE-2026-34182)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-45445](https://www.cve.org/CVERecord?id=CVE-2026-45445)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-42766](https://www.cve.org/CVERecord?id=CVE-2026-42766)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-42767](https://www.cve.org/CVERecord?id=CVE-2026-42767)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-42768](https://www.cve.org/CVERecord?id=CVE-2026-42768)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-42769](https://www.cve.org/CVERecord?id=CVE-2026-42769)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-42770](https://www.cve.org/CVERecord?id=CVE-2026-42770)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-45446](https://www.cve.org/CVERecord?id=CVE-2026-45446)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-7383](https://www.cve.org/CVERecord?id=CVE-2026-7383)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-9076](https://www.cve.org/CVERecord?id=CVE-2026-9076)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-34181](https://www.cve.org/CVERecord?id=CVE-2026-34181)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-2673](https://www.cve.org/CVERecord?id=CVE-2026-2673)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-22795](https://www.cve.org/CVERecord?id=CVE-2026-22795)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-22796](https://www.cve.org/CVERecord?id=CVE-2026-22796)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-28386](cve.org/CVERecord/SearchResults?query=CVE-2026-28386)               | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-28387](https://www.cve.org/CVERecord?id=CVE-2026-28387)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-28388](https://www.cve.org/CVERecord?id=CVE-2026-28388)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-28389](https://www.cve.org/CVERecord?id=CVE-2026-28389)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-28390](https://www.cve.org/CVERecord?id=CVE-2026-28390)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-31789](https://www.cve.org/CVERecord?id=CVE-2026-31789)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2026-31790](https://www.cve.org/CVERecord?id=CVE-2026-31790)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| **2025**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2025-11187](https://www.cve.org/CVERecord?id=CVE-2025-11187)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2025-15467](https://www.cve.org/CVERecord?id=CVE-2025-15467)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2025-15468](https://www.cve.org/CVERecord?id=CVE-2025-15468)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2025-15469](https://www.cve.org/CVERecord?id=CVE-2025-15469)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2025-66199](https://www.cve.org/CVERecord?id=CVE-2025-66199)                    | Under investigation                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| [CVE-2025-68160](https://www.cve.org/CVERecord?id=CVE-2025-68160)                    | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2025-69418](https://www.cve.org/CVERecord?id=CVE-2025-69418)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2025-69419](https://www.cve.org/CVERecord?id=CVE-2025-69419)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2025-69420](https://www.cve.org/CVERecord?id=CVE-2025-69420)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2025-69421](https://www.cve.org/CVERecord?id=CVE-2025-69421)                    | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2025-9230](https://www.cve.org/CVERecord?id=CVE-2025-9230)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2025-9231](https://www.cve.org/CVERecord?id=CVE-2025-9231)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2025-9232](https://www.cve.org/CVERecord?id=CVE-2025-9232)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2025-4575](https://openssl-library.org/news/vulnerabilities-3.5/#CVE-2025-4575) | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| **2024**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2024-13176](https://www.cve.org/CVERecord?id=CVE-2024-13176)                    | Refer to [https://support.checkpoint.com/results/sk/sk183168](https://support.checkpoint.com/results/sk/sk183168 "sk183168 - Check Point Response to CVE-2024-13176").                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| [CVE-2024-12797](https://www.cve.org/CVERecord?id=CVE-2024-12797)                    | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2024-9143](https://www.cve.org/CVERecord?id=CVE-2024-9143)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2024-6119](https://www.cve.org/CVERecord?id=CVE-2024-6119)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2024-5535](https://www.cve.org/CVERecord?id=CVE-2024-5535)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2024-4741](https://www.cve.org/CVERecord?id=CVE-2024-4741)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2024-4603](https://www.cve.org/CVERecord?id=CVE-2024-4603)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2024-2511](https://www.cve.org/CVERecord?id=CVE-2024-2511)                      | Refer to [sk182320 - Check Point response to CVE-2024-2511](https://support.checkpoint.com/results/sk/sk182320).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| [CVE-2024-0727](https://www.cve.org/CVERecord?id=CVE-2024-0727)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2023-6237](https://www.cve.org/CVERecord?id=CVE-2023-6237)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2023-6129](https://www.cve.org/CVERecord?id=CVE-2023-6129)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| **2023**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2023-5678](https://www.cve.org/CVERecord?id=CVE-2023-5678)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2023-5363](https://www.cve.org/CVERecord?id=CVE-2023-5363)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2023-4807](https://www.cve.org/CVERecord?id=CVE-2023-4807)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2023-3817](https://www.cve.org/CVERecord?id=CVE-2023-3817)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2023-3446](https://www.cve.org/CVERecord?id=CVE-2023-3446)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2023-2975](https://www.cve.org/CVERecord?id=CVE-2023-2975)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2023-2650](https://www.cve.org/CVERecord?id=CVE-2023-2650)                      | Refer to [sk181427 - Check Point response to CVE-2022-4450, CVE-2022-4304 and CVE-2023-2650](https://support.checkpoint.com/results/sk/sk181427).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| [CVE-2023-1255](https://www.cve.org/CVERecord?id=CVE-2023-1255)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2023-0464](https://www.cve.org/CVERecord?id=CVE-2023-0464)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2023-0465](https://www.cve.org/CVERecord?id=CVE-2023-0465)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2023-0466](https://www.cve.org/CVERecord?id=CVE-2023-0466)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2023-0401](https://www.cve.org/CVERecord?id=CVE-2023-0401)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2023-0286](https://www.cve.org/CVERecord?id=CVE-2023-0286)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2023-0217](https://www.cve.org/CVERecord?id=CVE-2023-0217)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2023-0216](https://www.cve.org/CVERecord?id=CVE-2023-0216)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2023-0215](https://www.cve.org/CVERecord?id=CVE-2023-0215)                      | Quantum products and CloudGuard Gateways are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| [CVE-2022-4450](https://www.cve.org/CVERecord?id=CVE-2022-4450)                      | Refer to [sk181427 - Check Point response to CVE-2022-4450, CVE-2022-4304 and CVE-2023-2650](https://support.checkpoint.com/results/sk/sk181427).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| [CVE-2022-4304](https://www.cve.org/CVERecord?id=CVE-2022-4304)                      | Refer to [sk181427 - Check Point response to CVE-2022-4450, CVE-2022-4304 and CVE-2023-2650](https://support.checkpoint.com/results/sk/sk181427).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| [CVE-2022-4203](https://www.cve.org/CVERecord?id=CVE-2022-4203)                      | Not relevant for Quantum products and CloudGuard Gateways.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| **2022**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2022-3786](https://www.cve.org/CVERecord?id=CVE-2022-3786)                      | Refer to [sk180206 - Check Point response to OpenSSL CVE-2022-3602 and CVE-2022-3786.](https://support.checkpoint.com/results/sk/sk180206)                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2022-3602](https://www.cve.org/CVERecord?id=CVE-2022-3602)                      | Refer to [sk180206 - Check Point response to OpenSSL CVE-2022-3602 and CVE-2022-3786.](https://support.checkpoint.com/results/sk/sk180206)                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2022-3358](https://www.cve.org/CVERecord?id=CVE-2022-3358)                      | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2022-2097](https://www.cve.org/CVERecord?id=CVE-2022-2097)                      | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2022-2274](https://www.cve.org/CVERecord?id=CVE-2022-2274)                      | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2022-2068](https://www.cve.org/CVERecord?id=CVE-2022-2068)                      | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2022-1473](https://www.cve.org/CVERecord?id=CVE-2022-1473)                      | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2022-1434](https://www.cve.org/CVERecord?id=CVE-2022-1434)                      | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2022-1343](https://www.cve.org/CVERecord?id=CVE-2022-1343)                      | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2022-1292](https://www.cve.org/CVERecord?id=CVE-2022-1292)                      | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2022-0778](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0778)        | Refer to [sk178411 - Check Point response to OpenSSL CVE-2022-0778.](https://support.checkpoint.com/results/sk/sk178411)                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| **2021**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2021-4160](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-4160)        | Not vulnerable. Relevant for MIPS platforms only.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| [CVE-2021-3711](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3711)        | Not vulnerable. Check Point products do not use/allow SM2 ciphers.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| [CVE-2021-3712](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3712)        | Not vulnerable. The Check Point code never directly constructs *ASN1_STRING*.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2021-3450](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3450)        | Not vulnerable. To be affected, an application must set the *X509_V_FLAG_X509_STRICT* flag explicitly. The Check Point code does not use this flag.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| [CVE-2021-3449](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3449)        | Refer to [sk172983 - Check Point Response to OpenSSL CVE-2021-3449](https://support.checkpoint.com/results/sk/sk172983).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| [CVE-2021-23841](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23841)      | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2021-23840](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23840)      | Not vulnerable. Calls to *EVP_CipherUpdate* , *EVP_EncryptUpdate* and *EVP_DecryptUpdate* may overflow the output length argument in some cases, where the input length is close to the maximum permissible length for an integer on the platform. The Check Point code calls these functions only with a small or limited input length, which prevents the overflow.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2021-23839](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23839)      | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| **2020**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2020-1971](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1971)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2020-1968](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1968)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2020-1967](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1967)        | Not vulnerable. The Check Point products do not use the vulnerable function (*SSL_check_chain*).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| **2019**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2019-1563](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1563)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2019-1547](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1547)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| **2018**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2018-0739](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-0739)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2018-0733](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-0733)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| **2017**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2017-3733](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-3733)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2017-3732](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-3732)        | Not relevant. The Check Point products do not use the FFDHE cipher suite.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2017-3731](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-3731)        | Relevant only when using an RC4-MD5 cipher suite, which all customers should have disabled by now per [sk106478 - Check Point response to CVE-2015-2808 (Bar Mitzvah)](https://support.checkpoint.com/results/sk/sk106478)                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2017-3730](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-3730)        | Not relevant. The Check Point products do not use the affected versions 1.1.0 prior to 1.1.0d.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| **2016**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2016-6309](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6309)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2016-6308](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6308)        | Not vulnerable (refer to [sk113500](https://support.checkpoint.com/results/sk/sk113500)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-6307](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6307)        | Not vulnerable (refer to [sk113500](https://support.checkpoint.com/results/sk/sk113500)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-6306](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6306)        | Refer to [sk113500 - Check Point response to OpenSSL Security advisory 22 September 2016](https://support.checkpoint.com/results/sk/sk113500).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| [CVE-2016-6305](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6305)        | Not vulnerable (refer to [sk113500](https://support.checkpoint.com/results/sk/sk113500)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-6304](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6307)        | Refer to [sk113500 - Check Point response to OpenSSL Security advisory 22 September 2016](https://support.checkpoint.com/results/sk/sk113500).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| [CVE-2016-6303](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6303)        | Not vulnerable (refer to [sk113500](https://support.checkpoint.com/results/sk/sk113500)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-6302](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6302)        | Not vulnerable (refer to [sk113500](https://support.checkpoint.com/results/sk/sk113500)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-2182](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2182)        | Not vulnerable (refer to [sk113500](https://support.checkpoint.com/results/sk/sk113500)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-2181](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2181)        | Not vulnerable (refer to [sk113500](https://support.checkpoint.com/results/sk/sk113500)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-2180](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2180)        | Not vulnerable (refer to [sk113500](https://support.checkpoint.com/results/sk/sk113500)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-2178](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2178)        | Not vulnerable (refer to [sk113500](https://support.checkpoint.com/results/sk/sk113500)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-2177](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2177)        | Not vulnerable (refer to [sk113500](https://support.checkpoint.com/results/sk/sk113500)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-2176](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2176)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-2109](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2109)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-2108](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2108)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-2107](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2107)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-2106](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2106)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-2105](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2105)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-0800](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0800)        | * HTTPS Portals on Gaia OS / SecurePlatform OS are not vulnerable. * HTTPS Portals on Gaia Embedded OS (600/700/1100/1200R/1400 appliances) are not vulnerable. * IPSO Network Voyager (over HTTPS) is not vulnerable. * Recommendations for Security Gateway configured as Mail Transfer Agent (MTA, see [sk109699](https://support.checkpoint.com/results/sk/sk109699)) and used as the organization MX record: 1. \[Preferred\] On the Security Gateway configured as Mail Transfer Agent (MTA), use a dedicated SSL certificate that is not used anywhere else. 2. \[Optional, but recommended\] Use the IPS protection "*Secure Sockets Layer Version 2.0*" to block SSLv2 connections. 3. \[Optional, but recommended\] Use the IPS protection "*Non Compliant SSL*" to block SSLv2 connections on TCP port 25: 1. In SmartDashboard, go to the *IPS* tab. 2. In the left upper pane, click*Protections*. 3. Search for: *Non Compliant SSL* 4. Double-click on this protection. 5. Double-click on the IPS profile. 6. Select *Override IPS Policy with* \> select *Prevent*. 7. Check the box *Protect SMTPS over SMTP Port (TCP/25)*. 8. Click on OK. 9. Repeat Steps *E - H* for each IPS Profile. 10. Click OK. 11. Install policy. 4. Follow [sk102989](https://support.checkpoint.com/results/sk/sk102989#Configuration recommendations) \> the section "*(III) Configuration recommendations for Check Point Portals and O* S" \> sub-section "*Recommendations for Mail Transfer Agent (MTA)* " \> disable SSLv2 and SSLv3 (and use only TLSv1). Note: Has wide impact - will also block reception of clear text e-mails over SMTP. * The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241). |
| [CVE-2016-0799](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0799)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-0798](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0798)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-0797](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0797)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-0705](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0705)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-0704](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0704)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-0703](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0703)        | * HTTPS Portals on Gaia OS / SecurePlatform OS are not vulnerable. * HTTPS Portals on Gaia OS Embedded (600/700/1100/1200R/1400 appliances) are not vulnerable. * IPSO Network Voyager (over HTTPS) is not vulnerable. * For Security Gateway configured as Mail Transfer Agent (MTA, see [sk109699](https://support.checkpoint.com/results/sk/sk109699)) and used as the organization MX record, refer to [sk102989](https://support.checkpoint.com/results/sk/sk102989#Configuration recommendations) \> section "*(III) Configuration recommendations for Check Point Portals and O* S" \> sub-section "*Recommendations for Mail Transfer Agent (MTA)* " - disable SSLv2 and SSLv3 (and use only TLSv1). * The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| [CVE-2016-0702](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0702)        | Not vulnerable. Exception: The LOM card firmware lower than 2.30 on 13000 / 21000 / Smart-1 series appliances is vulnerable. Refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2016-0701](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0701)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| **2015**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2015-3197](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3197)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2015-3196](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3196)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2015-3195](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3195)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2015-3194](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3194)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2015-3193](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3193)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2015-2808](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2808)        | Refer to [sk106499 - Check Point response to CVE-2015-2808 (Bar Mitzvah) and OpenSSL CVE-2015-1789](https://support.checkpoint.com/results/sk/sk106499)                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| [CVE-2015-1794](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1794)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2015-1793](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1793)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2015-1792](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1792)        | The LOM card firmware is vulnerable on the following appliances: * 4000 series - lower than 2.1.2 is vulnerable (refer to [sk97621](https://support.checkpoint.com/results/sk/sk97621)). * 12000 series - lower than 2.1.2 is vulnerable (refer to [sk97621](https://support.checkpoint.com/results/sk/sk97621)). * 13000 series - lower than 2.30 is vulnerable (refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241)). * 21000 series - lower than 2.30 is vulnerable (refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241)). * Smart-1 series - lower than 2.30 is vulnerable (refer to [sk101241](https://support.checkpoint.com/results/sk/sk101241)). Note: All other Check Point products are not vulnerable (because they do not use OpenSSL CMS code).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2015-1789](http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1789)     | Refer to [sk106499 - Check Point response to CVE-2015-2808 (Bar Mitzvah) and OpenSSL CVE-2015-1789](https://support.checkpoint.com/results/sk/sk106499).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| [CVE-2015-1788](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1788)        | Not relevant. Note: Check Point products do not use the OpenSSL *ECParameters* code.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| [CVE-2015-1787](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1787)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0293](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0293)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0292](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0292)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0291](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0291)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0290](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0290)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0289](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0289)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0288](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0288)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0287](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0287)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0286](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0286)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0285](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0285)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0209](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0209)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0208](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0208)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0207](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0207)        | Not vulnerable - refer to [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2015-0206](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0206)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2015-0205](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0205)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2015-0204](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0204)        | Refer to: * [sk105062 - Check Point response to TLS FREAK Attack (CVE-2015-0204)](https://support.checkpoint.com/results/sk/sk105062) * [sk105284 - Check Point response to OpenSSL Security advisory 19 March 2015](https://support.checkpoint.com/results/sk/sk105284)                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| **2014**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2014-8275](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8275)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2014-8176](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8176)        | Not vulnerable. Check Point products do not use the OpenSSL DTLS code.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| [CVE-2014-5139](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-5139)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2014-3572](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3572)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2014-3571](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3571)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2014-3570](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3570)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2014-3569](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3569)        | Not relevant. Refer to [sk102989 - Check Point response to the POODLE Bites vulnerability](https://support.checkpoint.com/results/sk/sk102989). Note: This CVE was created after fixing the CVE-2014-3568. Check Point is not vulnerable to CVE-2014-3568, so the fix for CVE-2014-3568 is not included.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| [CVE-2014-3568](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3568)        | Not vulnerable. Refer to [sk102989 - Check Point response to the POODLE Bites vulnerability](https://support.checkpoint.com/results/sk/sk102989). Note: Check Point OpenSSL is not compiled with "`-no-ssl3`".                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| [CVE-2014-3567](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3567)        | Not vulnerable. Refer to [sk102989 - Check Point response to the POODLE Bites vulnerability](https://support.checkpoint.com/results/sk/sk102989).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| [CVE-2014-3513](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3513)        | Not relevant. Check Point products do not use the OpenSSL DTLS code.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| [CVE-2014-3512](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3512)        | Not vulnerable. Check Point products do not support Secure Remote Password (SRP).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               |
| [CVE-2014-3511](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3511)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2014-3510](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3510)        | Not relevant. Check Point products do not use the OpenSSL DTLS code.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| [CVE-2014-3509](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3509)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2014-3508](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3508)        | Not relevant. Check Point products do not use OpenSSL's pretty print and Check Point logs are kept private.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2014-3507](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3507)        | Not relevant. Check Point products do not use the OpenSSL DTLS code.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| [CVE-2014-3506](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3506)        | Not relevant. Check Point products do not use the OpenSSL DTLS code.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| [CVE-2014-3505](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3505)        | Not relevant. Check Point products do not use the OpenSSL DTLS code.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| [CVE-2014-3470](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3470)        | Not vulnerable (this CVE does not affect the versions used by Check Point products).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                            |
| [CVE-2014-0224](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0224)        | Versions R77.20 and higher are not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| [CVE-2014-0221](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0221)        | Not vulnerable. This CVE does not affect the versions used by Check Point products.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| [CVE-2014-0198](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0198)        | Not vulnerable. This CVE does not affect the versions used by Check Point products.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| [CVE-2014-0195](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0195)        | Not vulnerable. This CVE does not affect the versions used by Check Point products.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| [CVE-2014-0160](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0160)        | Refer to [sk100173 - Check Point response to OpenSSL vulnerability](https://support.checkpoint.com/results/sk/sk100173).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| [CVE-2014-0076](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0076)        | Not vulnerable. Note: The bug is in the code that Check Point products do not use.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| **2013**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2013-6450](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6450)        | Not relevant. Check Point products do not use DTLS.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             |
| [CVE-2013-6449](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6449)        | Not relevant. OpenSSL used in Check Point products is not vulnerable because it does not have TLS 1.2.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| [CVE-2013-4353](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4353)        | Not relevant. OpenSSL used in Check Point products is not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| [CVE-2013-0169](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0169)        | The attack is impractical. Attacker needs to Man-in-the-Middle 8 million connections to gain one plaintext block. The result is more serious for DTLS. However, Check Point does not use DTLS for anything. The fix in OpenSSL has performance issues. Check Point does not plan to fix it.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| [CVE-2013-0166](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0166)        | Not relevant. Note: Check Point products perform their own certificate validation.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| **2012**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2012-2686](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2686)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2012-2333](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2333)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2012-1165](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1165)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2012-0884](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0884)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2012-0027](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0027)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| **2011**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2011-4619](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4619)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2011-4577](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4577)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2011-4576](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4576)        | Not vulnerable (fixed in [R75.40](https://support.checkpoint.com/results/sk/sk67581)).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| [CVE-2011-4109](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4109)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2011-4108](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4108)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2011-3210](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3210)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2011-1945](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1945)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2011-1473](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1473)        | Not exploitable, as Check Point applies various protections against DoS on the Security Gateway (limiting the number of connections, limiting the amount of data, etc.), and this CVE is not even considered a vulnerability in OpenSSL by the community.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| **2010**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2010-5298](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-5298)        | Not vulnerable (a fix for this CVE is already integrated).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| [CVE-2010-4252](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4252)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2010-4180](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4180)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2010-0433](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0433)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| **2009**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2009-4355](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4355)        | Not vulnerable.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| [CVE-2009-3555](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3555)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2009-3245](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3245)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2009-2409](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2409)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2009-1386](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1386)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2009-0789](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0789)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2009-0590](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0590)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| **2008**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2008-7270](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-7270)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2008-5077](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5077)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| **2006**                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              ||
| [CVE-2006-7250](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-7250)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2006-4343](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4343)        | Not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| [CVE-2006-3738](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3738)        | Not vulnerable. Refer to [sk33771](https://support.checkpoint.com/results/sk/sk33771).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| [CVE-2006-2940](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2940)        | Not vulnerable. The fix is included in the Check Point OpenSSL library.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| [CVE-2006-2937](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2937)        | Not vulnerable / not relevant.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |

### Clarifications:

|----------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| Status         | Meaning                                                                                                                                                                                                               |
| Not relevant   | * Either Check Point does not use the vulnerable code. * Or Check Point does not have this code in released versions. * Or Check Point changed the code in such a way that this vulnerability does not apply anymore. |
| Not vulnerable | * The issue is *not* relevant to Check Point code (the affected code does not exist or is not used in Check Point software). * The issue *was* relevant to Check Point code and Check Point has already fixed it.     |
| Relevant       | * The issue exists in Check Point code.                                                                                                                                                                               |

<br />

### How to check the version of the installed OpenSSL package:

**`[Expert@HostName:0]# cpopenssl version`**
> *Example* :
>
> ```
> [Expert@Gateway_172.29.19.156:0] # cpopenssl version 
> OpenSSl 1.1.1k �25 Mar 2021 
> [Expert@Gateway_172.29.19.156:0] #
> ```

**Notes:**

* The "`cpopenssl version`" command is supported in R80.40 and higher Check Point versions.
* All Check Point versions starting from R80.40 are protected and include all relevant CVE fixes.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
