This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Packet fragmentation vulnerability.

Should I be worried about this ?  (Version 2.025)
(Result of scan against box behind Astaro 2.025)

 VULNERABILITIES on X.X.X.X 
 Firewall 
  3    Host Vulnerable to Packet Fragmentation - ID: 34010 - CVE ID: Not Assigned    (Back to top)
--------------------------------------------------------------------------------
Diagnosis:
If malicious users fragment IP packets in a special way, they can make the filtering device of your firewall accept packets that it would normally reject. 

Consequences:
By exploiting this vulnerability, malicious users can bypass firewall policies and access services which are normally protected by the firewall. This makes the firewall almost useless. 

Solution:
Upgrade your firewall to the latest version. If the problem persists, contact your firewall vendor.


This thread was automatically locked due to age.