CVE-2001-1171: High severity checkpoint firewall-1 vulnerability
Published Mar 15, 2002
·Updated
Check Point Firewall-1 3.0b through 4.0 SP1 follows symlinks and creates a world-writable temporary .cpp file when compiling Policy rules, which could allow local users to gain privileges or modify the firewall policy.
Affected Software
1 affected component
Checkpoint Firewall-1=3.0b
Remediation
Event History
Mar 15, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1171?
CVE-2001-1171 is considered a high severity vulnerability due to its potential to allow local users to gain elevated privileges.
2
How do I fix CVE-2001-1171?
To fix CVE-2001-1171, update the Check Point Firewall-1 software to a version that does not create world-writable temporary files.
3
Who is affected by CVE-2001-1171?
CVE-2001-1171 affects users of Check Point Firewall-1 versions 3.0b through 4.0 SP1.
4
What can attackers do with CVE-2001-1171?
Attackers can exploit CVE-2001-1171 to modify firewall policy or gain unauthorized access to system privileges.
5
When was CVE-2001-1171 discovered?
CVE-2001-1171 was disclosed in September 2001.