Reported March 24, 2003, by Checkpoint.
Checkpoint VPN-1/FW-1 Client versions prior to Next Generation (NG) Feature Pack 3 (FP3) Hotfix-2
A new vulnerability in Checkpoint VPN-1/FW-1 Client versions prior to Next Generation (NG) Feature Pack 3 (FP3) Hotfix-2 can result in a Denial of Service (DoS) condition. By sending excessive amounts of data through a syslog connection, an attacker can cause the SmartTracker logging mechanism on the target firewall to experience high CPU utilization rates and crash without notice. You must manually restart the service to return to normal operations.
Checkpoint has released Hotfix-2 to address this vulnerability and recommends that affected users immediately apply the patch mentioned in the bulletin.
Discovered by Dr. Peter Bieringer of AERAsec Network Services and Security GmbH.