The OpenNET Project
 
Search (keywords):  SOFT ARTICLES TIPS & TRICKS SECURITY
LINKS NEWS MAN DOCUMENTATION


Check Point FireWall-1 GUI Log Viewer vulnerability (vuldb 3336)


<< Previous INDEX Search src Set bookmark Go to bookmark Next >>
Date: Wed, 19 Sep 2001 18:08:44 -0500
From: Scott Walker Register <[email protected]>
To: [email protected]
Subject: Check Point FireWall-1 GUI Log Viewer vulnerability (vuldb 3336)

Check Point response to FireWall-1 GUI Log Viewer Vulnerability

An issue exists in VPN-1/FireWall-1 Management Servers running on Windows NT or Windows 2000.   A malicious administrator can exploit a buffer overflow condition in the GUI authentication code to potentially impair management station functionality or to execute code.  Any attack must come from an IP address explicitly defined as an authorized GUI client.  Only management stations running Windows NT or Windows 2000 are affected. 

More information is available at http://www.checkpoint.com/techsupport/alerts/

Hotfixes are available for immediate download at http://www.checkpoint.com/techsupport/index.html. 

This advisory was brought to our attention on September 3rd, 2001 by the "QinetiQ SHC" Security Research Team.

----------------------------------------------------------------
[email protected]  ||  FireWall-1 Product Manager
               Check Point Software Technologies, Inc.
2255 Glades Road    /    Suite 324A     \  Boca Raton, FL  33431
Voice: 561.989.5418 | Fax: 561.997.5421  |   09/19/01   18:08:44
----------------------------------------------------------------

<< Previous INDEX Search src Set bookmark Go to bookmark Next >>



Партнёры:
PostgresPro
Inferno Solutions
Hosting by Hoster.ru
Хостинг:

Закладки на сайте
Проследить за страницей
Created 1996-2025 by Maxim Chirkov
Добавить, Поддержать, Вебмастеру