Home Page | Skip to Navigation | Skip to Content | Skip to Search | Skip to Footer

IPS-1 Protection Update for Various Enterprise Products (enterprisesoftware Version 1)

Subscribe

Check Point Reference: CPAI-2007-205
Date Published:
Severity:
Source: eEye Advisory
iDefense Advisory
Industry Reference(s): CVE-2007-3216
CVE-2007-5003
CVE-2007-5004
CVE-2007-5005
Protection Provided by: IPS-1
  • IPS-1
Who is Vulnerable?
The following vendor advisories have been issued for these vulnerabilities:
Vulnerability Description
The enterprisesoftware protocol subsystem offers a collection of protections which cover several vulnerabilities in CA BrightStor and Trend Micro ServerProtect Enterprise Products. 
Vulnerability Status
Vulnerabilities have been publicly disclosed, exploit status unknown at this time.

 

Update/Patch Available
Patches are available for all applicable software versions.
Vulnerability Details

The enterprisesoftware protocol subsystem offers a collection of protections which cover vulnerabilities in CA BrightStor and Trend Micro Enterprise Products.  These vulnerabilities exist in proprietary, ad-hoc protocols and services, so do not fall under the jursdiction of  any existing protocol subsystems in the IPS-1 product.  They have been grouped under the new enterprisesoftware protocol subsystem for convenience.

The following CVEs are handled by this release of the enterprisesoftware protocol subsystem:

CVE-2007-3216
CVE-2007-5003
CVE-2007-5004
CVE-2007-5005

Protection Overview
These vulnerabilities  have been grouped under the new enterprisesoftware protocol subsystem for convenience.

To configure the defense, select your product from the list below and follow the related protection steps.

Additional Information
N/A

IPS-1

How Can I Protect My Network?
By installing the enterprisesoftware protection group.

How Do I Know if My Network is Under Attack?
Any alert from the enterprisesoftware protection group is an indication that some of these more esoteric exploits are being leveraged against hosts on the monitored network