[17807] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Nokia firewalls

daemon@ATHENA.MIT.EDU (van der Kooij, Hugo)
Tue Nov 28 14:23:20 2000

Mime-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-Id:  <Pine.LNX.4.30.0011272315380.2190-100000@bastion.hugo.vanderkooij.org>
Date:         Mon, 27 Nov 2000 23:20:45 +0100
Reply-To: Hugo.van.der.Kooij@CAIW.NL
From: "van der Kooij, Hugo" <Hugo.van.der.Kooij@CAIW.NL>
X-To:         K2 <ktwo@KTWO.CA>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <3A223877.2C67CAD0@ktwo.ca>

On Mon, 27 Nov 2000, K2 wrote:

> 	Well I just unwrapped my shiny new Nokia IP440 integrated
> Firewall-1/IDS appliance and thought to give it a once over. It appears
> to be a older fBSD kernel + some firewall (checkpoint 4.1) + some IDS
> (ISS) + remote admin (SSH/http).

Could you state version numbers of:
 - IPSO (v3.2.1 is presumed if the box is reasonable fresh)
 - FireWall-1 (build level?)

...

> Anyhow, I just thought they may want to clean these things up...

Hmm.

I guess you have considered to inform the manufacturer? So why post it
here at this point?

Hugo.

PS: I would encourage to use normal disclosure procedures giving the
manufacturer 5 working days for such issues.

--
Hugo van der Kooij; Oranje Nassaustraat 16; 3155 VJ  Maasland
hvdkooij@caiw.nl	http://home.kabelfoon.nl/~hvdkooij/
--------------------------------------------------------------
This message has not been checked and may contain harmfull content.

home help back first fref pref prev next nref lref last post