RE: DoS Vulnerability found in ISS BlackICE Defender

From: Fernando Martins (fernando.martins@esoterica.pt)
Date: 02/05/02


From: "Fernando Martins" <fernando.martins@esoterica.pt>
To: <focus-ids@securityfocus.com>
Date: Tue, 5 Feb 2002 22:44:27 -0000


> From: Jensenne Roculan [mailto:jroculan@securityfocus.com]
(...)
> If anybody is aware of any vendor fixes, please forward them
> onto the list. TIA.

For a temporary workaround until the fix is available, the vendor said:

"Set the BlackICE Defender firewall to block ICMP. You must edit the
firewall.ini file and add the following: Under the [MANUAL ICMP ACCEPT]
section,

REJECT, 8:0, ICMP, 2001-10-15 20:28:53, PERPETUAL, 4000, BIGUI

Save the firewall.ini file."

FM