Gibraltar Firewall Antivirus Scan Evasion Vulnerability
BID:13713
Info
Gibraltar Firewall Antivirus Scan Evasion Vulnerability
| Bugtraq ID: | 13713 |
| Class: | Design Error |
| CVE: |
CVE-2005-1711 |
| Remote: | Yes |
| Local: | No |
| Published: | May 23 2005 12:00AM |
| Updated: | Jul 12 2009 02:56PM |
| Credit: | This vulnerability was reported by the vendor. |
| Vulnerable: |
Gibraltar Gibraltar Firewall 2.2 |
| Not Vulnerable: |
Gibraltar Gibraltar Firewall 2.2 a |
Discussion
Gibraltar Firewall Antivirus Scan Evasion Vulnerability
Gibraltar is susceptible to an antivirus scan evasion vulnerability. This issue presents itself because of an oversight in the design of the firewall product, due to a change of features of the ClamAV antivirus scanning engine.
This vulnerability allows malicious content to pass undetected by an affected firewall acting as an HTTP proxy, leading to a false sense of security.
Gibraltar is susceptible to an antivirus scan evasion vulnerability. This issue presents itself because of an oversight in the design of the firewall product, due to a change of features of the ClamAV antivirus scanning engine.
This vulnerability allows malicious content to pass undetected by an affected firewall acting as an HTTP proxy, leading to a false sense of security.
Exploit / POC
Gibraltar Firewall Antivirus Scan Evasion Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
Gibraltar Firewall Antivirus Scan Evasion Vulnerability
Solution:
The vendor has released version 2.2a of the affected firewall package. Users of affected packages are urged to contact the vendor for information on obtaining fixes.
Solution:
The vendor has released version 2.2a of the affected firewall package. Users of affected packages are urged to contact the vendor for information on obtaining fixes.
References
Gibraltar Firewall Antivirus Scan Evasion Vulnerability
References:
References:
- Gibraltar 2.2a Changelog (Gibraltar)
- Gibraltar Home Page (Gibraltar)