Check Point Firewall-1 GUI Log Viewer Vulnerability
BID:3336
Info
Check Point Firewall-1 GUI Log Viewer Vulnerability
| Bugtraq ID: | 3336 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 12 2001 12:00AM |
| Updated: | Sep 12 2001 12:00AM |
| Credit: | This vulnerability was initially discovered by the QinetiQ SHC Security Research Team, and was announced by <[email protected]>. |
| Vulnerable: |
Check Point Software Nokia Voyager 4.1 Check Point Software Firewall-1 4.1 SP5 Check Point Software Firewall-1 4.1 SP4 Check Point Software Firewall-1 4.1 SP3 Check Point Software Firewall-1 4.1 SP2 Check Point Software Firewall-1 4.1 SP1 Check Point Software Firewall-1 4.1 Check Point Software Firewall-1 4.0 SP8 Check Point Software Firewall-1 4.0 SP7 Check Point Software Firewall-1 4.0 SP6 Check Point Software Firewall-1 4.0 SP5 Check Point Software Firewall-1 4.0 SP4 Check Point Software Firewall-1 4.0 SP3 Check Point Software Firewall-1 4.0 SP2 Check Point Software Firewall-1 4.0 SP1 Check Point Software Firewall-1 4.0 |
| Not Vulnerable: | |
Discussion
Check Point Firewall-1 GUI Log Viewer Vulnerability
Firewall-1 is a popular stateful-inspection firewall.
It has been reported that Firewall-1 may contain a buffer overflow vulnerability. The vulnerability is allegedly in logging of authentication attempts by GUI log viewing clients.
It may be possible for remote attackers to execute arbitrary code as root on systems running Firewall-1.
The attack must be launched from hosts who are permitted to view logs via the GUI interface. This vulnerability is present only in the Windows NT and 2000 versions of the product.
Firewall-1 is a popular stateful-inspection firewall.
It has been reported that Firewall-1 may contain a buffer overflow vulnerability. The vulnerability is allegedly in logging of authentication attempts by GUI log viewing clients.
It may be possible for remote attackers to execute arbitrary code as root on systems running Firewall-1.
The attack must be launched from hosts who are permitted to view logs via the GUI interface. This vulnerability is present only in the Windows NT and 2000 versions of the product.
Exploit / POC
Check Point Firewall-1 GUI Log Viewer Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Check Point Firewall-1 GUI Log Viewer Vulnerability
Solution:
Check Point has made hotfixes available:
Check Point Software Nokia Voyager 4.1
Check Point Software Firewall-1 4.0 SP8
Check Point Software Firewall-1 4.1 SP4
Check Point Software Firewall-1 4.1 SP5
Solution:
Check Point has made hotfixes available:
Check Point Software Nokia Voyager 4.1
-
Check Point Software Hotfix for NG HF2
http://www.checkpoint.com/techsupport/downloads/downloads.html
Check Point Software Firewall-1 4.0 SP8
-
Check Point Software Hotfix for 4.0 SP8
http://www.checkpoint.com/techsupport/downloads/downloads.html
Check Point Software Firewall-1 4.1 SP4
-
Check Point Software Hotfix for 4.1 SP4
http://www.checkpoint.com/techsupport/downloads/downloads.html
Check Point Software Firewall-1 4.1 SP5
-
Check Point Software Hotfix for 4.1 SP5
http://www.checkpoint.com/techsupport/downloads/downloads.html
References
Check Point Firewall-1 GUI Log Viewer Vulnerability
References:
References:
- Check Point FireWall-1 GUI Buffer Overflow (Check Point Software)
- Check Point Technical Support (Check Point Software)
- FireWall-1 Product Homepage (Check Point Software)