HTTP: Alt-N Security Gateway Overflow

This signature detects attempts to exploit a known vulnerability in the Alt-N Security Gateway. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the Web server.

Extended Description

SecurityGateway is prone to a buffer-overflow vulnerability because it fails to adequately bounds-check user-supplied data before copying it to an insufficiently sized buffer. Attackers can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition. SecurityGateway 1.0.1 is vulnerable; other versions may also be affected.

Affected Products

Alt-n securitygateway

References

BugTraq: 29457

CVE: CVE-2008-4193

Short Name
HTTP:ALTN-SG-OF
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Alt-N CVE-2008-4193 Gateway Overflow Security bid:29457
Release Date
11/26/2008
Supported Platforms

srx-branch-19.3

vsrx3bsd-19.2

srx-19.4

vsrx3bsd-19.4

srx-branch-19.4

vsrx-19.4

vsrx-19.2

srx-19.3

srx-branch-12.3

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx-12.3

vmx-19.3

srx-12.3

Sigpack Version
3725
False Positive
Unknown
Vendors

Alt-n

CVSS Score

10.0

Found a potential security threat?