Computer Security
[EN] securityvulns.ru
no-pyccku



Name:CHECKPOINT : VPN-1 4.1

7!TCP RST packets spoofing
updated since 21.04.2004
document By sending spoofed RST it's possible to terminate established TCP connection. unlike TPC hijacking attacks there is no need for exact TCP sequence number, and number can be any number from handshaked TCP window. It significantly increases attack efficiency. In NetBSD sequence number for RST is not checked at all, it makes it possible to terminate session with single packet.
 Сбор информации о пользователях Check Point VPN-1 (information leakage)
   
 Переролнение буфера в VPN-1/FireWall-1 Management Servers (buffer overflow)
   
6!Обход checkpoint через RDP-пакеты (protection bypass)
updated since 10.07.2001
   
 Дырка в Firewall-1 (FASTMODE bug)
   
                    

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru