Search

published date: November 14, 2000

CVE-2000-0808 : The seed generation mechanism...

Description

The seed generation mechanism in the inter-module S/Key authentication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass authentication via a brute force attack, aka "One-time (s/key) Password Authentication."

Product(s):

  • Checkpoint Firewall-1 3.0
  • Checkpoint Firewall-1 4.0
  • Checkpoint Firewall-1 4.1
  • Checkpoint Firewall-1 1 4.1 SP1
  • Checkpoint Firewall-1 1 4.1 SP2
  • Checkpoint Firewall-1 1 4.1 SP3

Question to Ask Vendors:

  1. Can you confirm whether your systems are affected by CVE-2000-0808, and if so, what steps are you currently taking to mitigate this vulnerability?
  2. What is your estimated timeline for fully resolving CVE-2000-0808 in your products or services, and how will you communicate updates on this issue to us as your customer?

READY TO GET RESULTS YOU CAN TRUST?