Symantec has warned of a serious flaw in its VPN and firewall server products that could allow an attacker to take over affected systems and gain access to corporate networks. . . .. Symantec has warned of a serious flaw in its VPN and firewall server products that could allow an attacker to take over affected systems and gain access to corporate networks. Internet Security Systems (ISS) X-Force had first discovered the flaw in the Entrust module running on some of Symantec's gateway products. The module, which implements the IKE key exchange protocol, was not properly validating incoming ISAKMP packets. Internet Security Association and Key Management Protocol (ISAKMP) is a standard protocol for creating dynamic VPN tunnels. By sending sufficiently malformed ISAKMP packets, an attacker could cause a DoS condition in the affected VPN component. Or, if specifically crafted, the malformed ISAKMP packets could potentially lead to a further possible compromise of the VPN server. The link for this article located at CXOtoday Staff is no longer available. . A significant vulnerability in Norton’s VPN and firewall threatens enterprise systems and escalates security worries.. Symantec VPN Vulnerability,Firewall Security Flaw,ISAKMP Protocol Threats. . Anthony Pell
"Cisco last week admitted that two security vulnerabilities affecting its PIX firewalls could leave corporate networks open to attack. In an interim security notice, the vendor acknowledged the existence of two related vulnerabilities that both cause its Secure PIX . . .. "Cisco last week admitted that two security vulnerabilities affecting its PIX firewalls could leave corporate networks open to attack. In an interim security notice, the vendor acknowledged the existence of two related vulnerabilities that both cause its Secure PIX Firewalls to interpret FTP (File Transfer Protocol) commands out of context, leaving the networks behind the firewalls open to penetration." The link for this article located at VNUnet -- Â Â is no longer available. . Cisco's advisory issues a caution regarding potential security risks linked to PIX firewall flaws that could leave networks vulnerable to intrusions.. Cisco PIX Firewall Flaw, Network Security Issues, Security Threats. . Anthony Pell
Get the latest Linux and open source security news straight to your inbox.