Agnitum Outpost Firewall FiltNT.SYS Local Denial of Service Vulnerability
BID:19026
CVE-2006-3696 |Info
Agnitum Outpost Firewall FiltNT.SYS Local Denial of Service Vulnerability
| Bugtraq ID: | 19026 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Jul 17 2006 12:00AM |
| Updated: | Jul 18 2006 09:28PM |
| Credit: | Bipin Gautam is credited with the discovery of this vulnerability. |
| Vulnerable: |
Agnitum Outpost Firewall 3.5.631 |
| Not Vulnerable: |
Agnitum Outpost Firewall 3.51.759.6511 (462) |
Discussion
Agnitum Outpost Firewall FiltNT.SYS Local Denial of Service Vulnerability
Outpost Firewall is prone to a local denial-of-service vulnerability.
An attacker can exploit this issue to crash the application, effectively denying service.
Outpost Firewall Pro version 3.5.631 is affected by this issue; other versions may also be vulnerable.
Outpost Firewall is prone to a local denial-of-service vulnerability.
An attacker can exploit this issue to crash the application, effectively denying service.
Outpost Firewall Pro version 3.5.631 is affected by this issue; other versions may also be vulnerable.
Exploit / POC
Agnitum Outpost Firewall FiltNT.SYS Local Denial of Service Vulnerability
The following proof of concept is available:
c:\> mshta.exe longgggggggg string
The following proof of concept is available:
c:\> mshta.exe longgggggggg string
Solution / Fix
Agnitum Outpost Firewall FiltNT.SYS Local Denial of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Reports indicate that the latest version of Outpost Firewall Pro (3.51.759.6511 (462)) is not vulnerable to this issue. This may mean that the vendor has silently fixed this issue, but Symantec has not confirmed this.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Reports indicate that the latest version of Outpost Firewall Pro (3.51.759.6511 (462)) is not vulnerable to this issue. This may mean that the vendor has silently fixed this issue, but Symantec has not confirmed this.
References
Agnitum Outpost Firewall FiltNT.SYS Local Denial of Service Vulnerability
References:
References:
- Outpost Personal Firewall (Agnitum)
- Outpost Firewall Pro secrately fixing security flaws? (Bipin Gautam)