Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2002-2294


Multiple buffer overflows in Symantec Raptor Firewall 6.5 and 6.5.3, Enterprise Firewall 6.5.2 and 7.0, VelociRaptor 500/700/1000 and 1100/1200/1300, and Gateway Security 5110/5200/5300 allow remote attackers to cause a denial of service (service termination) via (1) malformed RealAudio (rad) packets that are not properly handled by the RealAudio Proxy, or (2) crafted packets to the statistics service (statsd).


Published

2002-12-31T05:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 5.0 (MEDIUM)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-119

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Hardware symantec gateway_security 5110_1.0 No
Hardware symantec gateway_security 5200_1.0 No
Hardware symantec gateway_security 5300 No
Application symantec enterprise_firewall 6.5.2 Yes
Application symantec enterprise_firewall 7.0 Yes
Application symantec enterprise_firewall 7.0 Yes
Application symantec raptor_firewall 6.5 Yes
Application symantec raptor_firewall 6.5.3 Yes
Application symantec velociraptor model_500 Yes
Application symantec velociraptor model_700 Yes
Application symantec velociraptor model_1000 Yes
Application symantec velociraptor model_1100 Yes
Application symantec velociraptor model_1200 Yes
Application symantec velociraptor model_1300 Yes

References