Overview
Watchguard Extensible Threat Management (XTM) version 11.7.4 and possibly earlier versions contain a buffer overflow vulnerability (CWE-121).
Description
CWE-121: Stack-based Buffer Overflow Watchguard Extensible Threat Management (XTM) version 11.7.4 and possibly earlier versions contain a buffer overflow vulnerability when reading large cookie requests. Remote administration is enabled by default on TCP/8080 for the virtual appliances (XTMv). The physical XTM appliances do not have this feature enabled by default. |
Impact
A remote unauthenticated attacker may be able to cause a denial of service, or execute arbitrary code on the appliance. |
Solution
Apply an Update |
Restrict access to the Watchguard XTM interface |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | 9.3 | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Temporal | 7.3 | E:POC/RL:OF/RC:C |
Environmental | 1.8 | CDP:ND/TD:L/CR:ND/IR:ND/AR:ND |
References
Acknowledgements
Thanks to Jerome Nokin (Research and Discovery) and Thierry Zoller (Coordination) from Verizon Enterprise Solutions (GCIS Threat and Vulnerability Management) for reporting this vulnerability.
This document was written by Adam Rauf.
Other Information
CVE IDs: | CVE-2013-6021 |
Date Public: | 2013-10-18 |
Date First Published: | 2013-10-18 |
Date Last Updated: | 2013-10-18 20:04 UTC |
Document Revision: | 21 |