NetScreen ScreenOS IP Spoofing Protection Bypass Vulnerability
BID:4016
Info
NetScreen ScreenOS IP Spoofing Protection Bypass Vulnerability
| Bugtraq ID: | 4016 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 21 2002 12:00AM |
| Updated: | Jan 21 2002 12:00AM |
| Credit: | Published in a NetScreen Security Advisory. |
| Vulnerable: |
NetScreen ScreenOS 3.0 r3 NetScreen ScreenOS 3.0 r2 NetScreen ScreenOS 3.0 r1 NetScreen ScreenOS 3.0 NetScreen ScreenOS 2.7.1 r2 NetScreen ScreenOS 2.7.1 r1 NetScreen ScreenOS 2.7.1 NetScreen ScreenOS 2.6.1 r4 NetScreen ScreenOS 2.6.1 r3 NetScreen ScreenOS 2.6.1 r2 NetScreen ScreenOS 2.6.1 r1 NetScreen ScreenOS 2.6.1 |
| Not Vulnerable: |
NetScreen ScreenOS 3.0 r4 NetScreen ScreenOS 2.7.1 r3 NetScreen ScreenOS 2.6.1 r5 |
Discussion
NetScreen ScreenOS IP Spoofing Protection Bypass Vulnerability
NetScreen is a line of Internet security appliances integrating firewall, VPN and traffic management features. ScreenOS is the software used to manage and configure the firewall. NetScreen supports Microsoft Windows 95, 98, ME, NT and 2000 clients.
An issue exists in ScreenOS which could allow a remote attacker to bypass the spoofing protection provided by NetScreen.
The feature which handles spoofed packets is not consistently discarding these packets. Thus, an attacker aware of the conditions required to evade spoof protection may be able to transmit spoofed packets beyond the ScreenOS device, possibly aiding in a more sophisticated attack. Standard firewall policy is still applied to these packets.
NetScreen is a line of Internet security appliances integrating firewall, VPN and traffic management features. ScreenOS is the software used to manage and configure the firewall. NetScreen supports Microsoft Windows 95, 98, ME, NT and 2000 clients.
An issue exists in ScreenOS which could allow a remote attacker to bypass the spoofing protection provided by NetScreen.
The feature which handles spoofed packets is not consistently discarding these packets. Thus, an attacker aware of the conditions required to evade spoof protection may be able to transmit spoofed packets beyond the ScreenOS device, possibly aiding in a more sophisticated attack. Standard firewall policy is still applied to these packets.
Exploit / POC
NetScreen ScreenOS IP Spoofing Protection Bypass Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
NetScreen ScreenOS IP Spoofing Protection Bypass Vulnerability
Solution:
NetScreen has released patches which address this issue. Contact Technical Support <[email protected]> or 1-800.638.8296 on instructions how to obtain the fixed software.
Solution:
NetScreen has released patches which address this issue. Contact Technical Support <[email protected]> or 1-800.638.8296 on instructions how to obtain the fixed software.
References
NetScreen ScreenOS IP Spoofing Protection Bypass Vulnerability
References:
References:
- IP Spoof protection failure (NetScreen)
- NetScreen Homepage (NetScreen)
- Software Upgrades (NetScreen)