WatchGuard Firebox VClass CLI Interface Format String Vulnerability
BID:5814
Info
WatchGuard Firebox VClass CLI Interface Format String Vulnerability
| Bugtraq ID: | 5814 |
| Class: | Input Validation Error |
| CVE: |
CVE-2002-1519 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 27 2002 12:00AM |
| Updated: | Jul 11 2009 05:06PM |
| Credit: | Discovery of this vulnerability credited to Joao Gouveia <[email protected]>. |
| Vulnerable: |
WatchGuard Firebox V80 WatchGuard Firebox V60 WatchGuard Firebox V100 WatchGuard Firebox V10 RapidStream RapidStream 8000 RapidStream RapidStream 6000 RapidStream RapidStream 500 RapidStream RapidStream 4000 RapidStream RapidStream 2000 |
| Not Vulnerable: | |
Discussion
WatchGuard Firebox VClass CLI Interface Format String Vulnerability
A format string vulnerability has been reported for the Firebox Vclass and legacy RSSA line of security appliances. The vulnerability is due to inadequate checking of user-supplied input for passwords in the CLI (command line interface) binary. A remote attacker is able to supply a password comprised of malicious format specifiers. This may result in memory being overwritten by remote attackers, possibly to execute arbitrary code. Any attacker-supplied code will executed with root privileges.
A format string vulnerability has been reported for the Firebox Vclass and legacy RSSA line of security appliances. The vulnerability is due to inadequate checking of user-supplied input for passwords in the CLI (command line interface) binary. A remote attacker is able to supply a password comprised of malicious format specifiers. This may result in memory being overwritten by remote attackers, possibly to execute arbitrary code. Any attacker-supplied code will executed with root privileges.
Exploit / POC
WatchGuard Firebox VClass CLI Interface Format String Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
WatchGuard Firebox VClass CLI Interface Format String Vulnerability
Solution:
The vendor has released hotfixes which resolve this issue. Further details are available in the respective release notes and referenced BugTraq message:
RapidStream RapidStream 2000
RapidStream RapidStream 6000
RapidStream RapidStream 500
RapidStream RapidStream 4000
RapidStream RapidStream 8000
Solution:
The vendor has released hotfixes which resolve this issue. Further details are available in the respective release notes and referenced BugTraq message:
RapidStream RapidStream 2000
-
WatchGuard RS-302-HotFix-31.rsu
ftp://RSSA:[email protected]/RSSA_302/RSSA-302-HotFix-31/ RS-302-HotFix-31.rsu -
WatchGuard RS-32-hotfix-2-2000.rsu
ftp://RSSA:[email protected]/RSSA_302/Vcontroller_32/32_H F2_2000_4000/RS-32-hotfix-2-2000.rsu
RapidStream RapidStream 6000
-
WatchGuard RS-302-HotFix-31.rsu
ftp://RSSA:[email protected]/RSSA_302/RSSA-302-HotFix-31/ RS-302-HotFix-31.rsu -
WatchGuard RS-32-hotfix-2.rsu
ftp://RSSA:[email protected]/RSSA_302/Vcontroller_32/32_H F2_6000_8000/RS-32-hotfix-2.rsu
RapidStream RapidStream 500
-
WatchGuard RS-32-hotfix-2-500.rsu
ftp://RSSA:[email protected]/RSSA_500/Vclass-32_HotFix2/R S-32-hotfix-2-500.rsu
RapidStream RapidStream 4000
-
WatchGuard RS-302-HotFix-31.rsu
ftp://RSSA:[email protected]/RSSA_302/RSSA-302-HotFix-31/ RS-302-HotFix-31.rsu -
WatchGuard RS-32-hotfix-2-2000.rsu
ftp://RSSA:[email protected]/RSSA_302/Vcontroller_32/32_H F2_2000_4000/RS-32-hotfix-2-2000.rsu
RapidStream RapidStream 8000
-
WatchGuard RS-302-HotFix-31.rsu
ftp://RSSA:[email protected]/RSSA_302/RSSA-302-HotFix-31/ RS-302-HotFix-31.rsu -
WatchGuard RS-32-hotfix-2.rsu
ftp://RSSA:[email protected]/RSSA_302/Vcontroller_32/32_H F2_6000_8000/RS-32-hotfix-2.rsu
References
WatchGuard Firebox VClass CLI Interface Format String Vulnerability
References:
References:
- 3.2 Hotfix 2 Release Notes (WatchGuard)
- Legacy RapidStream Software (WatchGuard)
- RapidStream Product Information (RapidStream)
- RS-302-HotFix-31-readme.txt (WatchGuard)
- WatchGuard Firebox Product Page (WatchGuard Technologies Inc.)
- WatchGuard Homepage (WatchGuard)