Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass the directionality check via fragmented TCP connection requests or reopening closed TCP connection requests, aka One-way Connection Enforcement Bypass.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Firewall-1 | Checkpoint | 3.0 (including) | 3.0 (including) |
Firewall-1 | Checkpoint | 4.0 (including) | 4.0 (including) |
Firewall-1 | Checkpoint | 4.1 (including) | 4.1 (including) |