Media Alert: Check Point Research Team Discovers Critical ToolTalk Database Server Vulnerability
July 26 2010 - 11:30AM
Marketwired
Check Point® Software Technologies Ltd. (NASDAQ: CHKP), the
worldwide leader in securing the Internet, today announced the
Check Point IPS Research team has recently discovered a critical
vulnerability in a function of the ToolTalk Database Server Parser
that can enable a remote attacker to potentially inject and execute
arbitrary code onto the affected system. Check Point customers are
protected against this vulnerability with the Check Point IPS
Software Blade and NGX SmartDefense, which provide immediate
protection by detecting and blocking malformed database requests.
For more information and protection against the ToolTalk database
server vulnerability, visit:
http://www.checkpoint.com/defense/advisories/public/announcement/2010/071410-tooltalk-db-server-vulnerability.html.
The vulnerability identified is in the RPC-based ToolTalk
database server that creates and manages database files and affects
all system users with IBM AIX Version 6.1.3 and lower, Sun Solaris
10 Sparc/x86 and lower, as well as HP HP-UX 11.0 and lower. The
vulnerability was discovered and responsibly disclosed to vendors
by the Check Point IPS Research team, who conduct original research
on network, protocol, application vulnerabilities, and identify
potential exploits before they are introduced into the wild. Check
Point recommends applying the latest vendor patches and getting
immediate protection by applying the latest IPS update.
In addition, Check Point also announced today that its IPS
Software Blade and NGX SmartDefense solutions protect against the
two zero-day vulnerabilities Microsoft recently patched,
including:
- The Windows Help and Support Center (HSC)
vulnerability - A zero-day threat found that can enable a
remote attacker to entice a user to open a maliciously crafted HTML
file with Internet Explorer and execute arbitrary code on the
affected system.
- The Canonical Display Driver
vulnerability - A critical zero-day threat that may be
exploited by convincing a user to view a specially crafted image
file with an affected application.
Check Point IPS solutions provide intrusion prevention
capabilities integrated into Check Point gateways that detect and
block attempts to exploit these vulnerabilities. Check Point IPS
products are supported by Check Point's Update Services, which
provide ongoing and real-time updates and configuration advisories
for defenses and security policies. Check Point protections are
developed and distributed by Security Research and Response Centers
located around the globe.
Based on the Software Blade architecture, Check Point IPS
Software Blade provides complete, integrated, next generation
firewall intrusion prevention capabilities at multi-gigabit speeds,
with preemptive threat coverage for clients, servers, OS and other
vulnerabilities, malware/worm infections, and more. Software Blades
are independent and flexible security modules that enable companies
to select the functions they need to build a custom Check Point
Security Gateway.
More information about these vulnerabilities and Check Point
protections can be found at:
http://www.checkpoint.com/defense/advisories/public/index.html.
About Check Point Software Technologies
Ltd. Check Point Software Technologies Ltd.
(www.checkpoint.com), the worldwide leader in securing the
Internet, is the only vendor to deliver Total Security for
networks, data and endpoints, unified under a single management
framework. Check Point provides customers with uncompromised
protection against all types of threats, reduces security
complexity and lowers total cost of ownership. Check Point first
pioneered the industry with FireWall-1 and its patented stateful
inspection technology. Today, Check Point continues to innovate
with the development of the Software Blade architecture. The
dynamic Software Blade architecture delivers secure, flexible and
simple solutions that can be fully customized to meet the exact
security needs of any organization or environment. Check Point
customers include tens of thousands of businesses and organizations
of all sizes including all Fortune 100 companies. Check Point's
award-winning ZoneAlarm solutions protect millions of consumers
from hackers, spyware and identity theft.
©2010 Check Point Software Technologies Ltd. All rights
reserved.
Media Contact Stephanie Look Check Point Software
Technologies +1 650.628.2171 press@us.checkpoint.com Investor
Contact Kip E. Meintzer Check Point Software Technologies +1
650.628.2040 ir@us.checkpoint.com
Check Point Software Tec... (NASDAQ:CHKP)
Historical Stock Chart
From Apr 2024 to May 2024
Check Point Software Tec... (NASDAQ:CHKP)
Historical Stock Chart
From May 2023 to May 2024