- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- Re: firewall vulnerability
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
firewall vulnerability
Based on recent security review for vulnerability (CVE-2023-22809), the Firewall servers are impacted.
Kindly share the related steps or article for how to upgrade the SUDO version 1.8.19p2 to 1.9.12p2
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @umar7
Check Point is not exploitable to this CVE since to run the sudo or sudoedit command you need to be in Expert mode, which means that you are already admin and the privilege escalation is meaningless.
Also, users on Gaia are not configured to run the sudo command (not sudoers).
Gaia Embedded Appliances are also not vulnerable since they do not use sudo at all.
Mind, if you need an official written answer from Check Point (the one I am giving you is not, technically), open a TAC request.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
sudo requires access to the expert mode shell, which is already root access.
Therefore, this vulnerability is not relevant.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @umar7
Check Point is not exploitable to this CVE since to run the sudo or sudoedit command you need to be in Expert mode, which means that you are already admin and the privilege escalation is meaningless.
Also, users on Gaia are not configured to run the sudo command (not sudoers).
Gaia Embedded Appliances are also not vulnerable since they do not use sudo at all.
Mind, if you need an official written answer from Check Point (the one I am giving you is not, technically), open a TAC request.
