Check Point Reference: | CPAI-2012-141 |
Date Published: | 16 Apr 2012 |
Severity: | High |
Last Updated: | Friday 22 November, 2024 |
Source: | |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | Blue Coat Systems ProxyOne All versions Blue Coat Systems ProxySG Prior to 6.1 Blue Coat Systems BCAAA Prior to Build 60258 Blue Coat Systems BCAAA All versions associated with ProxyOne |
Vulnerability Description | A remote code execution vulnerability has been reported in Blue Coat Authentication and Authorization Agent (BCAAA). |
Vulnerability Details | The vulnerability is due to a buffer overflow condition while handling malicious TCP requests. A remote attacker may exploit this issue by sending specially crafted TCP requests to an affected service. Successful exploitation could cause the host to crash and may allow an attacker to execute arbitrary code in the security context of the affected service. |
This protection will detect and block attempts to exploit this vulnerability.
In order for the protection to be activated, update your product to the latest update. For information on how to update , go to SBP-2006-05, Protection tab and select the version of your choice.
SmartView Tracker will log the following entries:
Attack Name: Proxy Server Enforcement Violation
Attack Information: Blue Coat BCAAA Stack Buffer Overflow