Kerio WinRoute Firewall Multiple Unspecified Remote Vulnerabilities
BID:11870
Info
Kerio WinRoute Firewall Multiple Unspecified Remote Vulnerabilities
| Bugtraq ID: | 11870 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 10 2004 12:00AM |
| Updated: | Dec 10 2004 12:00AM |
| Credit: | The individual or individuals responsible for the discovery of these issues are currently unknown; the vendor disclosed these issues. |
| Vulnerable: |
Kerio WinRoute Firewall 6.0.8 Kerio WinRoute Firewall 6.0.7 Kerio WinRoute Firewall 6.0.6 Kerio WinRoute Firewall 6.0.5 Kerio WinRoute Firewall 6.0.4 Kerio WinRoute Firewall 6.0.3 Kerio WinRoute Firewall 6.0.2 Kerio WinRoute Firewall 6.0.1 Kerio WinRoute Firewall 6.0 |
| Not Vulnerable: |
Kerio WinRoute Firewall 6.0.9 |
Discussion
Kerio WinRoute Firewall Multiple Unspecified Remote Vulnerabilities
Multiple unspecified remote vulnerabilities reportedly affect Kerio's WinRoute Firewall. These issues are likely due to design errors and a failure or the application to properly handle malformed network data, although this is not verified.
The first issue is a remote denial of service that may cause the affected computer to crash or hang. The second issue is a DNS cache poisoning vulnerability. The final issue is an information disclosure vulnerability.
An attacker may exploit these issues to gain access to otherwise restricted information and manipulate the DNS cache of the affected firewall, potentially facilitating further attacks against the affected network. Also an attacker may leverage these issues to cause the affected computer to crash or hang, facilitating a denial of service condition.
Multiple unspecified remote vulnerabilities reportedly affect Kerio's WinRoute Firewall. These issues are likely due to design errors and a failure or the application to properly handle malformed network data, although this is not verified.
The first issue is a remote denial of service that may cause the affected computer to crash or hang. The second issue is a DNS cache poisoning vulnerability. The final issue is an information disclosure vulnerability.
An attacker may exploit these issues to gain access to otherwise restricted information and manipulate the DNS cache of the affected firewall, potentially facilitating further attacks against the affected network. Also an attacker may leverage these issues to cause the affected computer to crash or hang, facilitating a denial of service condition.
Exploit / POC
Kerio WinRoute Firewall Multiple Unspecified Remote Vulnerabilities
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Kerio WinRoute Firewall Multiple Unspecified Remote Vulnerabilities
Solution:
The vendor has released WinRoute Firewall version 6.0.9 resolving this issue. Users running the affected firewall are advised to contact the vendor for more information on obtaining the upgrade.
Solution:
The vendor has released WinRoute Firewall version 6.0.9 resolving this issue. Users running the affected firewall are advised to contact the vendor for more information on obtaining the upgrade.
References
Kerio WinRoute Firewall Multiple Unspecified Remote Vulnerabilities
References:
References:
- Kerio Homepage (Kerio)
- WinRoute Firewall Product Page (Kerio)
- WinRoute Firewall Release History (Kerio)