Quantum Security Gateway
CVE-2026-48132: VPN service may restart unexpectedly when processing IKE traffic over NAT-T 4500/UDP
The Security Gateway does not correctly validate a length value in certain IKE packets when NAT-T is used (4500/UDP).
Published
Automatic summary from the vendor's CVE record. We haven't written a full analysis of this vulnerability yet.
Affected and fixed versions
| Product / branch | Fixed in |
|---|---|
| Quantum Security Gateway R82.10 with Jumbo Hotfix Take 6 or below | See the advisory |
| Quantum Security Gateway R82 with Jumbo Hotfix Take 91 or below | See the advisory |
| Quantum Security Gateway R81.20 with Jumbo Hotfix Take 127 or below | See the advisory |
| Quantum Security Gateway All releases from R81.10 and below | See the advisory |
Always confirm against the vendor advisory, which lists every fixed hotfix.
What it is
The Security Gateway does not correctly validate a length value in certain IKE packets when NAT-T is used (4500/UDP). As a result, a specially crafted or malformed packet can cause the VPN processing service to terminate unexpectedly, leading to denial of service (temporary interruption of VPN negotiations/traffic).
Sources
KEV status, EPSS score and vendor data refreshed automatically, last on 10 Oct 2026.