Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass the directionality check via fragmented TCP connection requests or reopening closed TCP connection requests, aka One-way Connection Enforcement Bypass.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Firewall-1 | Checkpoint | 3.0 (including) | 3.0 (including) |
| Firewall-1 | Checkpoint | 4.0 (including) | 4.0 (including) |
| Firewall-1 | Checkpoint | 4.1 (including) | 4.1 (including) |