|
|
A vulnerability has been identified in Kerio Personal Firewall, which can be exploited by malicious people to bypass the firewall.
The vulnerability is caused due to an access control error. The default firewall ruleset accepts any incoming UDP traffic from port 53, which makes it possible for a malicious person to port scan a system for listening UDP services and communicate with these by using port 53 as source port.
Version 2.1.4 has been reported vulnerable but other versions may also be affected.
Solution:
The personal firewall ruleset should only accept incoming UDP traffic from source port 53 if it is a DNS response originating from a name server, which has recieved a DNS query from the client system.
|
|
|
|
No Comments Allowed for Anonymous, please register |
|
| |
|
Login |
|
 |
|
|
|
|
· New User? · Click here to create a registered account.
|
|
|
Article Rating |
|
 |
|
|
|
|
Average Score: 3 Votes: 1

|
|
|