A DoS situation

Sep 19, 2007 08:12 GMT  ·  By

This is the second piece of news about a vulnerable firewall today. Like I said before, it's important to have security measures on your computer, but it's a bad thing when those programs become a liability. As I've read on SecurityFocus, Sunbelt Kerio Personal Firewall has been disclosed with some vulnerabilities because the application fails to properly sanitize user-supplied input.

So, what could happen if a hacker exploited these vulnerabilities? Well, he could crash the affected system. This exploit has "Denial of Service" written all over it. Also, as seen on the same site, code execution may be possible as well, but has not been confirmed. And don't go thinking that you can't possibly be affected by this. Hackers don't attack people at random, they probe the web and see who is vulnerable. They attack the users with weak points. So, don't let this program be a vulnerability in your system - apply a solution and stay safe again. It's not hard, all you need to do is update to the latest version. This issue is fixed in Kerio Personal Firewall 4.3.635.

You may click on this link to see more about the vulnerabilities, what versions are affected and how this can be exploited by malicious users.

Here is the official Kerio website where you may get your update from. It is important that you patch up any holes in your system. Don't think that if you have a firewall that's it - you're protected, if the program is vulnerable, then so is your machine. Like I've said before - there is no perfect program, but make sure that yours has less vulnerabilities. Why give hackers the opportunity of attacking you? Keep security software on your machine and update it regularly. That is bound to keep most malicious users at bay!