Buffer overflow in the ISAKMP functionality for Check Point VPN-1 and FireWall-1 NG products, before VPN-1/FireWall-1 R55 HFA-03, R54 HFA-410 and NG FP3 HFA-325, or VPN-1 SecuRemote/SecureClient R56, may allow remote attackers to execute arbitrary code during VPN tunnel negotiation.
2004-07-07T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 10.0 (HIGH)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | checkpoint | firewall-1 | * | Yes |
Application | checkpoint | firewall-1 | 2.0 | Yes |
Application | checkpoint | firewall-1 | 2.0.1 | Yes |
Application | checkpoint | next_generation | * | Yes |
Application | checkpoint | ng-ai | r54 | Yes |
Application | checkpoint | ng-ai | r55 | Yes |
Application | checkpoint | vpn-1 | vsx_2.0.1 | Yes |
Application | checkpoint | vpn-1 | vsx_ng_with_application_intelligence | Yes |