Multiple Kerio Products Universal Secret Key Storage Vulnerability
BID:11930
Info
Multiple Kerio Products Universal Secret Key Storage Vulnerability
| Bugtraq ID: | 11930 |
| Class: | Design Error |
| CVE: |
CVE-2004-1022 |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 14 2004 12:00AM |
| Updated: | Jul 12 2009 09:26AM |
| Credit: | Discovery of this vulnerability is credited to Secure Computer Group <[email protected]>. |
| Vulnerable: |
Kerio WinRoute Firewall 6.0.8 Kerio WinRoute Firewall 6.0.7 Kerio WinRoute Firewall 6.0.6 Kerio WinRoute Firewall 6.0.5 Kerio WinRoute Firewall 6.0.4 Kerio WinRoute Firewall 6.0.3 Kerio WinRoute Firewall 6.0.2 Kerio WinRoute Firewall 6.0.1 Kerio WinRoute Firewall 6.0 Kerio WinRoute Firewall 5.10 Kerio WinRoute Firewall 5.1.10 Kerio WinRoute Firewall 5.1.9 Kerio WinRoute Firewall 5.1.8 Kerio WinRoute Firewall 5.1.7 Kerio WinRoute Firewall 5.1.6 Kerio WinRoute Firewall 5.1.5 Kerio WinRoute Firewall 5.1.4 Kerio WinRoute Firewall 5.1.3 Kerio WinRoute Firewall 5.1.2 Kerio WinRoute Firewall 5.1.1 Kerio WinRoute Firewall 5.1 Kerio WinRoute Firewall 5.0.9 Kerio WinRoute Firewall 5.0.8 Kerio WinRoute Firewall 5.0.7 Kerio WinRoute Firewall 5.0.6 Kerio WinRoute Firewall 5.0.5 Kerio WinRoute Firewall 5.0.4 Kerio WinRoute Firewall 5.0.3 Kerio WinRoute Firewall 5.0.2 Kerio WinRoute Firewall 5.0.1 Kerio ServerFirewall 1.0 Kerio Mailserver 6.0.4 Kerio Mailserver 6.0.3 Kerio Mailserver 6.0.2 Kerio Mailserver 6.0.1 Kerio Mailserver 6.0 Kerio Mailserver 5.7.10 Kerio Mailserver 5.7.9 Kerio Mailserver 5.7.8 Kerio Mailserver 5.7.7 Kerio Mailserver 5.7.6 Kerio Mailserver 5.7.5 Kerio Mailserver 5.7.4 Kerio Mailserver 5.7.3 Kerio Mailserver 5.7.2 Kerio Mailserver 5.7.1 Kerio Mailserver 5.7 .0 Kerio Mailserver 5.6.5 Kerio Mailserver 5.6.4 Kerio Mailserver 5.6.3 Kerio Mailserver 5.1.1 Kerio Mailserver 5.1 Kerio Mailserver 5.0 |
| Not Vulnerable: |
Kerio WinRoute Firewall 6.0.9 Kerio ServerFirewall 1.0.1 Kerio Mailserver 6.0.5 |
Discussion
Multiple Kerio Products Universal Secret Key Storage Vulnerability
Kerio WinRoute Firewall, Kerio ServerFirewall, and Kerio MailServer are all reported prone to a design flaw. It is reported that these products store credentials in a local database store, these credentials are obscured using an unspecified symmetric encryption algorithm. Reports indicate that a universal secret key is employed to extract plain text from the credential hashes; this presents a security risk because the universal secret key is stored in the WinRoute Firewall, Kerio ServerFirewall, and Kerio MailServer binaries.
Kerio WinRoute Firewall, Kerio ServerFirewall, and Kerio MailServer are all reported prone to a design flaw. It is reported that these products store credentials in a local database store, these credentials are obscured using an unspecified symmetric encryption algorithm. Reports indicate that a universal secret key is employed to extract plain text from the credential hashes; this presents a security risk because the universal secret key is stored in the WinRoute Firewall, Kerio ServerFirewall, and Kerio MailServer binaries.
Exploit / POC
Multiple Kerio Products Universal Secret Key Storage Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Multiple Kerio Products Universal Secret Key Storage Vulnerability
Solution:
The vendor has released updates to address this vulnerability; Kerio Winroute Firewall version 6.0.7 addresses the vulnerability in Kerio Winroute. Kerio Mailserver version 6.0.5 addresses the vulnerability in Kerio Mailserver and Kerio ServerFirewall version 1.0.1 addresses the vulnerability in Kerio ServerFirewall. Customers are advised to contact the vendor for further information in regards to obtaining and applying appropriate updates.
Solution:
The vendor has released updates to address this vulnerability; Kerio Winroute Firewall version 6.0.7 addresses the vulnerability in Kerio Winroute. Kerio Mailserver version 6.0.5 addresses the vulnerability in Kerio Mailserver and Kerio ServerFirewall version 1.0.1 addresses the vulnerability in Kerio ServerFirewall. Customers are advised to contact the vendor for further information in regards to obtaining and applying appropriate updates.
References
Multiple Kerio Products Universal Secret Key Storage Vulnerability
References:
References:
- Kerio Homepage (Kerio)
- KMS Release history (Kerio)
- KSF Release history (Kerio)
- KWF Release history (Kerio)
- [CAN-2004-1022] Insecure Credential Storage on Kerio Software (Secure Computer Group
)