CVE-2002-2161: Medium severity Kerio Personal Firewall vulnerability
Published Dec 31, 2002
·Updated
Kerio Personal Firewall (KPF) 2.1.4 and earlier allows remote attackers to cause a denial of service (hang and CPU consumption) via a SYN packet flood.
Affected Software
5 affected components
Kerio Personal Firewall=2.1.2
Kerio Personal Firewall=2.1.4
Kerio Personal Firewall=2.1
Kerio Personal Firewall=2.1.3
Kerio Personal Firewall=2.1.1
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Nov 16, 2005
CVE Published
via MITRE·09:17 PM
Data Sourced
via MITRE·09:17 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2161?
CVE-2002-2161 is considered a denial of service vulnerability that can lead to significant CPU consumption and system hang.
2
Which versions of Kerio Personal Firewall are affected by CVE-2002-2161?
CVE-2002-2161 affects Kerio Personal Firewall versions 2.1.0 to 2.1.4.
3
How do I fix CVE-2002-2161?
To address CVE-2002-2161, upgrade to a later, patched version of Kerio Personal Firewall.
4
What kind of attack does CVE-2002-2161 allow?
CVE-2002-2161 allows attackers to execute a SYN flood attack, resulting in a denial of service.
5
Is CVE-2002-2161 still relevant today?
While CVE-2002-2161 is an older vulnerability, it serves as an example of the types of network denial of service risks still faced by systems.