Vulnerabilities > CVE-2004-0699 - Unspecified vulnerability in Checkpoint Firewall-1 and Vpn-1

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
checkpoint
nessus

Summary

Heap-based buffer overflow in ASN.1 decoding library in Check Point VPN-1 products, when Aggressive Mode IKE is implemented, allows remote attackers to execute arbitrary code by initiating an IKE negotiation and then sending an IKE packet with malformed ASN.1 data.

Vulnerable Configurations

Part Description Count
Application
Checkpoint
2

Nessus

NASL familyFirewalls
NASL idCHECKPOINT_FORMAT.NASL
descriptionThe remote Check Point Firewall web server crashes when sent a specially formatted HTTP request. A remote attacker could use this to crash the web server, or possibly execute arbitrary code. This bug is a solid indicator that the server is vulnerable to several other Check Point FW-1 4.x bugs that Nessus did not check for.
last seen2020-06-01
modified2020-06-02
plugin id12084
published2004-03-02
reporterThis script is Copyright (C) 2004-2018 and is owned by Tenable, Inc. or an Affiliate thereof.
sourcehttps://www.tenable.com/plugins/nessus/12084
titleCheck Point FireWall-1 4.x Multiple Vulnerabilities (OF, FS)