WatchGuard Product Security Update Advisory (CVE-2025-9242)
Overview
We have released a security update to fix vulnerabilities in WatchGuard products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-9242
Firebox Fireware OS version: 2025.1
Firebox Fireware OS version: 12.0 or later and 12.11.3 or later
Firebox Fireware OS (T15 & T35 models) version: 12.5.0 or later but not earlier than 12.5.13
Firebox Fireware OS (FIPS-certified release) version: 12.3.1 or later and less than 12.3.1_Update3 (B722811)
Firebox Fireware OS version: 11.10.2 or later and 11.12.4_Update1 or earlier
Resolved Vulnerabilities
Out-of-bounds write vulnerability in WatchGuard Firebox (CVE-2025-9242)
Vulnerability Patches
Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-9242
Firebox Fireware OS version: 2025.1.1
Firebox Fireware OS Version: 12.11.4
Firebox Fireware OS (T15 & T35 models) Version: 12.5.13
Firebox Fireware OS (FIPS-certified release) version: 12.3.1_Update3 (B722811)
* Fireware OS 11.x is in End of Life (EOL) status and no patches are available.
References
[1] WatchGuard Firebox iked Out of Bounds Write Vulnerability
https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00015