Kerio Personal Firewall Firewall Filter Bypass Vulnerability
BID:7436
Info
Kerio Personal Firewall Firewall Filter Bypass Vulnerability
| Bugtraq ID: | 7436 |
| Class: | Configuration Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 25 2003 12:00AM |
| Updated: | Apr 25 2003 12:00AM |
| Credit: | Discovery of this issue credited to David F. Madrid. |
| Vulnerable: |
Kerio Personal Firewall 2 2.1.4 |
| Not Vulnerable: | |
Discussion
Kerio Personal Firewall Firewall Filter Bypass Vulnerability
Reportedly, KPF suffers from a vulnerability whereby the existing firewall filters may be bypassed. This vulnerability exists due to the fact that UDP traffic to and from port 53 is allowed.
Allegedly, an attacker may craft a special packet with a source port of 53 and send this packet to a vulnerable system. KPF will allow this packet to proceed thus bypassing the firewall filters.
Reportedly, KPF suffers from a vulnerability whereby the existing firewall filters may be bypassed. This vulnerability exists due to the fact that UDP traffic to and from port 53 is allowed.
Allegedly, an attacker may craft a special packet with a source port of 53 and send this packet to a vulnerable system. KPF will allow this packet to proceed thus bypassing the firewall filters.
Exploit / POC
Kerio Personal Firewall Firewall Filter Bypass Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Kerio Personal Firewall Firewall Filter Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.