Release date:
Updated on:
Affected Systems:
Ingate Firewall 4.x
Ingate SIParator 4.x
Description:
--------------------------------------------------------------------------------
Both Ingate Firewall and SIParator are enterprise-level hardware Firewall devices.
Ingate Firewall and SIParator have a DoS vulnerability when handling TLS. Malicious users can exploit this vulnerability to cause DOS.
This vulnerability is caused by an error that occurs when handling multiple TLS targets. This vulnerability can be exploited to reset the SIP module and delete the SIP session.
<* Source: vendor
Link: http://www.ingate.com/Relnote.php? Ver = 492
Http://secunia.com/advisories/45168/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Ingate
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.ingate.com/