exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

sunbelt.txt

sunbelt.txt
Posted Jan 2, 2007
Site matousec.com

The Sunbelt Kerio Personal Firewall versions 4.3.268 and below suffer from a DLL injection vulnerability.

tags | advisory
SHA-256 | 488b82db6efba6ec4264c02bbd509d4a2bcccdee72011d20c692134c1107e847

sunbelt.txt

Change Mirror Download
Hello,

We would like to inform you about a vulnerability Sunbelt Kerio Personal Firewall:

Description:

When Sunbelt Kerio Personal Firewall (SKPF) loads dependant modules, it relies on the operating system. System library
iphlpapi.dll is located in the system directory but the main SKPF service, which requires and loads this DLL, is located
in the installation directory of SKPF. This is why it tries to find iphlpapi.dll in its installation directory at first
and then, if it is not found in this directory, it tries to find it in the system directory. Moreover, it is possible to
create new files in the installation directory of SKPF. A malicious application can create a fake iphlpapi.dll in the
installation directory of SKPF, which will be loaded by the operating system into the SKPF service during its
initialization. This is how the malicious application is able to execute an arbitrary code inside SKPF service and
bypass any of its security mechanisms.


Vulnerable software:

* Sunbelt Kerio Personal Firewall 4.3.268
* Sunbelt Kerio Personal Firewall 4.3.246
* probably all versions of Sunbelt Kerio Personal Firewall 4
* possibly older versions of Sunbelt Kerio Personal Firewall



More details and a proof of concept including its source code are available here:
http://www.matousec.com/info/advisories/Kerio-Fake-iphlpapi-DLL-injection.php


Regards,


--
Matousec - Transparent security Research
http://www.matousec.com/
Login or Register to add favorites

File Archive:

December 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Dec 1st
    0 Files
  • 2
    Dec 2nd
    41 Files
  • 3
    Dec 3rd
    25 Files
  • 4
    Dec 4th
    0 Files
  • 5
    Dec 5th
    0 Files
  • 6
    Dec 6th
    0 Files
  • 7
    Dec 7th
    0 Files
  • 8
    Dec 8th
    0 Files
  • 9
    Dec 9th
    0 Files
  • 10
    Dec 10th
    0 Files
  • 11
    Dec 11th
    0 Files
  • 12
    Dec 12th
    0 Files
  • 13
    Dec 13th
    0 Files
  • 14
    Dec 14th
    0 Files
  • 15
    Dec 15th
    0 Files
  • 16
    Dec 16th
    0 Files
  • 17
    Dec 17th
    0 Files
  • 18
    Dec 18th
    0 Files
  • 19
    Dec 19th
    0 Files
  • 20
    Dec 20th
    0 Files
  • 21
    Dec 21st
    0 Files
  • 22
    Dec 22nd
    0 Files
  • 23
    Dec 23rd
    0 Files
  • 24
    Dec 24th
    0 Files
  • 25
    Dec 25th
    0 Files
  • 26
    Dec 26th
    0 Files
  • 27
    Dec 27th
    0 Files
  • 28
    Dec 28th
    0 Files
  • 29
    Dec 29th
    0 Files
  • 30
    Dec 30th
    0 Files
  • 31
    Dec 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close