CVE-2006-2267: Medium severity Kerio Winroute Firewall vulnerability
Kerio WinRoute Firewall before 6.2.1 allows remote attackers to cause a denial of service (application crash) via unknown vectors in the "email protocol inspectors," possibly (1) SMTP and (2) POP3.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-2267?
CVE-2006-2267 is classified as a denial of service vulnerability, potentially allowing attackers to crash the Kerio WinRoute Firewall application.
How do I fix CVE-2006-2267?
To fix CVE-2006-2267, you should update your Kerio WinRoute Firewall to version 6.2.1 or later.
What versions are affected by CVE-2006-2267?
CVE-2006-2267 affects various versions of Kerio WinRoute Firewall, specifically versions prior to 6.2.1.
What types of attacks are possible with CVE-2006-2267?
CVE-2006-2267 allows remote attackers to exploit email protocol inspectors, potentially leading to application crashes.
Is there a temporary workaround for CVE-2006-2267?
While the best way to mitigate CVE-2006-2267 is to apply the update, consider restricting access to the vulnerable protocols as a temporary measure.