Home Page | Skip to Navigation | Skip to Content | Skip to Search | Skip to Footer

Check Point Protects Customers Against Apache 1.3 Buffer Overflow Vulnerability

Check Point SmartDefense Service Provides Customers with Vulnerability Protection

REDWOOD CITY, Calif., - June 15, 2004 - Check Point Software Technologies Ltd. (NASDAQ: CHKP), the worldwide leader in securing the Internet, today announced that its industry-leading VPN-1® Next Generation™ product lines defend against a security vulnerability that has been discovered in the proxy module of the Apache HTTP Server version 1.3x.

The vulnerability exists in the mod_proxy module of the Apache HTTP Server 1.3, and can be exploited to cause a buffer overflow which can result in a Denial of Service (DoS) attack. The buffer overflow is caused by an HTTP request with an illegal header value.

By taking full advantage of INSPECT, the industry's most intelligent and adaptive inspection technology, Check Point provides customers with the best network and application-level security protection on the market for dynamic Internet threats like the Apache 1.3 vulnerability. In addition, customers using the SmartDefense Service benefit from real-time updates that provide protection from new and emerging threats.

A defense against this vulnerability has been available to subscription customers of the SmartDefense Service since June 14, 2004. For more information on how to provide the appropriate defenses, please see advisory CPAI-2004-23 at http://www.checkpoint.com/securitycenter/advisories/index.html.

About Check Point SmartDefense Service
The SmartDefense Service capabilities are available for Check Point products including VPN-1 Pro, Check Point Express, InterSpect and Connectra.

About Check Point Software Technologies
Check Point Software Technologies is the worldwide leader in securing the Internet. It is the confirmed market leader of both the worldwide VPN and firewall markets. Through its Next Generation product line, the company delivers a broad range of Perimeter, Internal and Web security solutions that protect business communications and resources for corporate networks and applications, remote employees, branch offices and partner extranets. Extending the power of the Check Point solution is its Open Platform for Security (OPSEC), the industry's framework and alliance for integration and interoperability with "best-of-breed" solutions from over 350 leading companies. Check Point solutions are sold, integrated and serviced by a network of more than 2,300 Check Point partners in 92 countries. For more information, please call us at (800) 429-4391 or (650) 628-2000, or visit us on the Web at http://www.checkpoint.com or at http://www.opsec.com.

###

©2004 Check Point Software Technologies Ltd.
All rights reserved. Check Point, Application Intelligence, Check Point Express, the Check Point logo, ClusterXL, ConnectControl, Connectra, FireWall-1, FireWall-1 GX, FireWall-1 SecureServer, FireWall-1 XL, FloodGate-1, INSPECT, INSPECT XL, InterSpect, IQ Engine, Open Security Extension, OPSEC, Provider-1, Safe@Office, SecureKnowledge, SecurePlatform, SecureXL, SiteManager-1, SmartCenter, SmartCenter Pro, SmartDashboard, SmartDefense, SmartLSM, SmartMap, SmartUpdate, SmartView, SmartView Monitor, SmartView Reporter, SmartView Status, SmartViewTracker, SSL Network Extender, UAM, User-to-Address Mapping, UserAuthority, VPN-1, VPN-1 Accelerator Card, VPN-1 Edge, VPN-1 Pro, VPN-1 SecureClient, VPN-1 SecuRemote, VPN-1 SecureServer, VPN-1 VSX, Web Intelligence, TrueVector, ZoneAlarm, Zone Alarm Pro, Zone Labs, the Zone Labs logo, AlertAdvisor, Cooperative Enforcement, IMsecure, Policy Lifecycle Management, Zone Labs Integrity and Smarter Security are trademarks or registered trademarks of Check Point Software Technologies Ltd. or its affiliates. All other product names mentioned herein are trademarks or registered trademarks of their respective owners. The products described in this document are protected by U.S. Patent No. 5,606,668, 5,835,726 and 6,496,935 and may be protected by other U.S. Patents, foreign patents, or pending applications.