CVE-2006-0578: High severity bluecoat Sgos vulnerability
Published Feb 8, 2006
·Updated
Blue Coat Proxy Security Gateway OS (SGOS) 4.1.2.1 does not enforce CONNECT rules when using Deep Content Inspection, which allows remote attackers to bypass connection filters.
Affected Software
1 affected component
bluecoat Sgos=4.1.2.1
Event History
Feb 8, 2006
CVE Published
01:02 AM
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-0578?
CVE-2006-0578 is classified as a medium severity vulnerability.
2
How can I fix CVE-2006-0578?
To fix CVE-2006-0578, update to a patched version of the Blue Coat Proxy Security Gateway OS that addresses the CONNECT rules enforcement issue.
3
What does CVE-2006-0578 allow attackers to do?
CVE-2006-0578 allows remote attackers to bypass connection filters by exploiting the inadequate enforcement of CONNECT rules.
4
Which software versions are affected by CVE-2006-0578?
CVE-2006-0578 specifically affects Blue Coat Proxy Security Gateway OS version 4.1.2.1.
5
Is there a workaround for CVE-2006-0578?
Currently, the best practice is to upgrade to a version of the software that is not vulnerable, as no workaround is provided for CVE-2006-0578.