Update Protection against Microsoft Active Directory Federation Services Code Execution Vulnerability (MS09-070)
| Check Point Reference: | CPAI-2009-251 | |
| Date Published: | ||
| Severity: | ||
| Last Updated: | ||
| Source: | Microsoft Security Bulletin MS09-070 | |
| Industry Reference(s): | CVE-2009-2509 | |
| Protection Provided by: |
Security Gateway
|
|
| Who is Vulnerable? Windows Server 2003 for 32-bit Systems S2 Windows Server 2008 for 32-bit Systems Windows Server 2008 for x64-based Systems | ||
| Vulnerability Description A remote code execution vulnerability has been discovered in implementations of Active Directory Federation Services (ADFS). Active Directory provides central authentication and authorization services for Windows-based systems. Active Directory Federation Services (ADFS) helps the client to use single sign-on by securely sharing digital identity and entitlement rights across security and enterprise boundaries. A remote attacker can exploit the vulnerability to take complete control of an affected system remotely. |
||
|
Update/Patch Available Apply patches: Microsoft Security Bulletin MS09-070 |
|
|
Vulnerability Details The vulnerability is due to an error in the ADFS that fails to correctly validate request headers submitted by authenticated clients of an ADFS enabled Web server. A remote attacker may trigger this vulnerability by sending a specially crafted HTTP request to an ADFS-enabled Web server. Successful exploitation of this vulnerability could allow the attacker to execute arbitrary code on a vulnerable system. |
Protection Overview
This protection detects and blocks specially crafted HTTP requests sent to the vulnerable server.
In order for the protection to be activated, update your Security Gateway/VPN-1 product to the latest IPS/SmartDefense update. For information on how to update IPS/SmartDefense, go to SBP-2006-05, Protection tab and select the version of your choice.
To configure the defense, select your product from the list below and follow the related protection steps.