Multiple Vulnerabilities in Checkpoint Firewall-1 NG AI and HTTP Security Server

Checkpoint Firewall-1 NG AI and HTTP Security Server contain multiple remotely exploitable format-string vulnerabilities that can result in the compromise of the vulnerable firewall.

Ken Pfeil

February 9, 2004

1 Min Read
ITPro Today logo

Reported February 4, 2004 by ISS.

 

 

VERSIONS AFFECTED

 

  • Checkpoint Firewall-1 NG-AI R55 and R54, including SSL hotfix

  • Checkpoint Firewall-1 HTTP Security Server, included with NG FP1, FP2, and FP3

 

DESCRIPTION

 

Checkpoint Firewall-1 NG AI and HTTP Security Server contain multiple remotely exploitable format-string vulnerabilities that can result in the compromise of the vulnerable firewall.

 

VENDOR RESPONSE

 

Checkpoint has issued anupdate about these vulnerabilities and recommends that affected users immediately apply the available patch.

 

CREDIT

 

Discovered by Mark Dowd.

Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like