Check Point Reference: | CPAI-2015-1137 |
Date Published: | 6 Oct 2015 |
Severity: | High |
Last Updated: | Tuesday 06 October, 2015 |
Source: | |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | Sysax Multi Server 6.40 |
Vulnerability Description | A denial-of-service vulnerability has been reported in Sysax Multi Server. The vulnerability is due to incorrectly dereferencing NULL pointers when handling certain malformed SSH messages. An unauthenticated, remote attacker could exploit this vulnerability by sending a crafted SSH message to the affected server. Successful exploitation results in a DoS condition. |
This protection will detect and block attempts to exploit this vulnerability.
In order for the protection to be activated, update your Security Gateway product to the latest IPS update. For information on how to update IPS, go to SBP-2006-05, click on Protection tab and select the version of your choice.
This protection's log will contain the following information:
Attack Name: SSH Protection Violation.
Attack Information: Sysax Multi Server SSH Component Denial Of Service