TUCoPS :: SunOS/Solaris :: fw-7.htm

FireWall-1 bug will reboot a Solaris machine when exploited!
Vulnerability

    FW-1

Affected

    Those using FW-1

Description

    Malikai found  following.   There is  a known  bug with FireWall-1
    relating to any (presumably)  udp packet destined to  any (through
    the vpn)  host at  port 0.   This bug  was identified  by someone,
    however since it has not yet been disclosed.  This issue is  valid
    for  (to  knowledge)  any  flavor  of encryption (DES, 3DES, FWZ1,
    ISAKMP, etc.).   ISAKMP encapsulation is  the only one  vulnerable
    to this attack.  It will reboot a solaris machine when exploited.

Solution

    Yet to be fixed.

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH