Denial of Service in Watchguard Firebox
A Denial of Service (DoS) condition exists within Watchguard’s SOHO Firebox product.
Ken Pfeil
April 9, 2002
1 Min Read
Reported April 9, 2002, byAndreas Sandor.
VERSIONS AFFECTED
Watchguard SOHO Firebox, all firmware versions prior to 5.0.35
DESCRIPTION
ADenial of Service (DoS) condition exists within Watchguard’s SOHO Fireboxproduct. Because the product doesn’t parse IP packets unless forwarding, anattacker can crash or reboot the server by sending packets with certainmalformed arguments.
VENDOR RESPONSE
Thevendor, Watchguard, has releasedfirmware 5.0.35 to fix this vulnerability and recommends that affected usersupgrade their firmware to this version.
CREDIT
Discovered by AndreasSandor.
About the Author
Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.
You May Also Like