Check Point Firewall-1 Internet Key Exchange Information Disclosure Vulnerability
BID:10558
Info
Check Point Firewall-1 Internet Key Exchange Information Disclosure Vulnerability
| Bugtraq ID: | 10558 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 16 2004 12:00AM |
| Updated: | Jun 16 2004 12:00AM |
| Credit: | Disclosure of this issue is credited to Roy Hills <[email protected]>. |
| Vulnerable: |
Check Point Software Nokia Voyager 4.1 Check Point Software NG-AI R55 Check Point Software NG-AI R54 Check Point Software NG-AI Check Point Software Next Generation FP3 HF2 Check Point Software Next Generation FP3 HF1 Check Point Software Next Generation FP3 Check Point Software Next Generation FP2 Check Point Software Next Generation FP1 Check Point Software Firewall-1 4.1 SP6 Check Point Software Firewall-1 4.1 SP5a Check Point Software Firewall-1 4.1 SP5 Check Point Software Firewall-1 4.1 SP4 Check Point Software Firewall-1 4.1 SP3 Check Point Software Firewall-1 4.1 SP2 Check Point Software Firewall-1 4.1 SP1 Check Point Software Firewall-1 4.1 Check Point Software Firewall-1 4.0 SP8 Check Point Software Firewall-1 4.0 SP7 Check Point Software Firewall-1 4.0 SP6 Check Point Software Firewall-1 4.0 SP5 Check Point Software Firewall-1 4.0 SP4 Check Point Software Firewall-1 4.0 SP3 Check Point Software Firewall-1 4.0 SP2 Check Point Software Firewall-1 4.0 SP1 Check Point Software Firewall-1 4.0 |
| Not Vulnerable: | |
Discussion
Check Point Firewall-1 Internet Key Exchange Information Disclosure Vulnerability
Check Point Firewall-1 is affected by an information disclosure vulnerability during an Internet Key Exchange (IKE) phase. This issue is due to a design error that may present sensitive information to an attacker.
An attacker can leverage this issue to disclose information about the affected firewall product including the version number and various details about the firewall's capabilities. Furthermore this issue would facilitate fingerprinting or identifying a firewall by carrying out active scans.
Check Point Firewall-1 is affected by an information disclosure vulnerability during an Internet Key Exchange (IKE) phase. This issue is due to a design error that may present sensitive information to an attacker.
An attacker can leverage this issue to disclose information about the affected firewall product including the version number and various details about the firewall's capabilities. Furthermore this issue would facilitate fingerprinting or identifying a firewall by carrying out active scans.
Exploit / POC
Check Point Firewall-1 Internet Key Exchange Information Disclosure Vulnerability
No exploit is required to leverage this issue. The following bytes, in hexidecimal format, are reported to trigger this issue:
f4ed19e0c114eb516faaac0ee37daf2807b4381f
No exploit is required to leverage this issue. The following bytes, in hexidecimal format, are reported to trigger this issue:
f4ed19e0c114eb516faaac0ee37daf2807b4381f
Solution / Fix
Check Point Firewall-1 Internet Key Exchange Information Disclosure Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Check Point Firewall-1 Internet Key Exchange Information Disclosure Vulnerability
References:
References:
- FireWall-1 Product Homepage (Check Point Software)
- Checkpoint Firewall-1 IKE Vendor ID information leakage (Roy Hills
)