Multiple Vendor Firewall Port 53 Communication Vulnerability
BID:4725
Info
Multiple Vendor Firewall Port 53 Communication Vulnerability
| Bugtraq ID: | 4725 |
| Class: | Configuration Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 10 2002 12:00AM |
| Updated: | May 10 2002 12:00AM |
| Credit: | Posted to BugTraq on May 10, 2002 by Christian decoder Holler <[email protected]> |
| Vulnerable: |
Tiny Personal Firewall 2.0.15 Tiny Personal Firewall 2.0 Tiny Personal Firewall 1.0 ATGuard ATGuard Personal Firewall 3.2 |
| Not Vulnerable: | |
Discussion
Multiple Vendor Firewall Port 53 Communication Vulnerability
Tiny Personal Firewall 2.0 is a simple personal firewall for Windows based machines. It is reported to allow any communication over port 53 for DNS purposes; this could be problematic if the DNS server was not explicitely defined in the firewall configuration. This could open the way for a trojan that uses port 53 to bypass the firewall. ATGuard 3.2 is also reported to be vulnerable to this issue.
Tiny Personal Firewall 2.0 is a simple personal firewall for Windows based machines. It is reported to allow any communication over port 53 for DNS purposes; this could be problematic if the DNS server was not explicitely defined in the firewall configuration. This could open the way for a trojan that uses port 53 to bypass the firewall. ATGuard 3.2 is also reported to be vulnerable to this issue.
Exploit / POC
Multiple Vendor Firewall Port 53 Communication Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Multiple Vendor Firewall Port 53 Communication Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Multiple Vendor Firewall Port 53 Communication Vulnerability
References:
References:
- Personal Firewall Homepage (Tiny Software)