Skip to content

CVE 2026 81433

psirt.watchguard.com • September 30, 2026

A stack-based buffer overflow vulnerability in WatchGuard Fireware OS's DHCP fingerprinting daemon (fingerd) allows an unauthenticated attacker with adjacent network access to execute arbitrary code or crash the process by sending a specially crafted DHCP packet.

Weakness Type and Impact #

CWE CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

CWE CWE-121 Stack-based Buffer Overflow

CWE CWE-787 Out-of-bounds Write

CAPEC CAPEC-100 Overflow Buffers

Exploitation Status #

Laurent GAFFIE, (secorizon.com) finder

View the canonical record on cve.org