{"id":1259,"date":"2024-05-30T06:18:35","date_gmt":"2024-05-30T04:18:35","guid":{"rendered":"https:\/\/techlance.ddns.net\/?p=1259"},"modified":"2024-05-30T06:19:18","modified_gmt":"2024-05-30T04:19:18","slug":"vakava-haavoittuvuus-check-point-quantum-gateway-tuotteissa","status":"publish","type":"post","link":"https:\/\/techlance.ddns.net\/en\/vakava-haavoittuvuus-check-point-quantum-gateway-tuotteissa\/","title":{"rendered":"Vakava haavoittuvuus Check Point Quantum Gateway -tuotteissa"},"content":{"rendered":"<p>heck Point Quantum Gateway palomuurituotteissa on l\u00f6ydetty<br>haavoittuvuus, jota on havaittu hyv\u00e4ksik\u00e4ytett\u00e4v\u00e4n rajattuun<br>asiakaskuntaan kohdistuvissa hy\u00f6kk\u00e4ysyrityksiss\u00e4. Valmistaja on<br>julkaissut korjaavan ohjelmistop\u00e4ivityksen sek\u00e4 ohjeita p\u00e4ivityksen<br>suorittamiseen. P\u00e4ivitys tulee ottaa k\u00e4ytt\u00f6\u00f6n viipym\u00e4tt\u00e4 ja varmistaa<br>ettei onnistuneesta hyv\u00e4ksik\u00e4yt\u00f6st\u00e4 ole havaintoja.<\/p>\n\n\n\n<p>## Haavoittuvuuden kohde<\/p>\n\n\n\n<p>Check Point Quantum Gateway -tuotteet:<\/p>\n\n\n\n<p>&#8211; &#8211; CloudGuard Network<br>&#8211; &#8211; Quantum Maestro<br>&#8211; &#8211; Quantum Scalable Chassis<br>&#8211; &#8211; Quantum Security Gateways<br>&#8211; &#8211; Quantum Spark Appliances<\/p>\n\n\n\n<p>Haavoittuvat versiot:<\/p>\n\n\n\n<p>&#8211; &#8211; R80.20.x<br>&#8211; &#8211; R80.20SP (EOL)<br>&#8211; &#8211; R80.40 (EOL)<br>&#8211; &#8211; R81, R81.10<br>&#8211; &#8211; R81.10.x<br>&#8211; &#8211; R81.20<\/p>\n\n\n\n<p>Tilanne 2024-05-29<\/p>\n\n\n\n<p>## Mist\u00e4 on kysymys?<\/p>\n\n\n\n<p>Check Point julkaisi 27.5.2024 tiedotteen, jossa kerrottiin heid\u00e4n<br>valmistamiinsa et\u00e4k\u00e4ytt\u00f6 VPN-ratkaisuihin kohdistuvista<br>hy\u00f6kk\u00e4ysyrityksist\u00e4 viimeisten kuukausien aikana. Valmistaja suositteli<br>tuotteidensa k\u00e4ytt\u00e4ji\u00e4 poistamaan mahdollisesti hy\u00f6kk\u00e4ykselle alttiit<br>konfiguraatiot k\u00e4yt\u00f6st\u00e4 v\u00e4litt\u00f6m\u00e4sti. 28.5.2024 Check Point p\u00e4ivitti<br>tiedotettaan, jossa he nyt kertoivat l\u00f6yt\u00e4neens\u00e4 hyv\u00e4ksik\u00e4yt\u00f6n<br>mahdollistavan haavoittuvuuden ja julkaisivat siihen korjauspaketin.<\/p>\n\n\n\n<p>Haavoittuvuus mahdollistaa hy\u00f6kk\u00e4\u00e4j\u00e4n lukea tiettyj\u00e4 palomuurilaitteen<br>tietoja oikeudetta, mik\u00e4li siin\u00e4 on VPN tai mobiilik\u00e4ytt\u00f6<br>&#8211; -toiminnallisuudet k\u00e4yt\u00f6ss\u00e4. T\u00e4h\u00e4n menness\u00e4 havaitut<br>hyv\u00e4ksik\u00e4ytt\u00f6yritykset ovat liittyneet vanhojen paikallisten<br>k\u00e4ytt\u00e4j\u00e4tilien hy\u00f6dynt\u00e4miseen, joissa on k\u00e4yt\u00f6ss\u00e4 pelkk\u00e4\u00e4n salasanaan<br>pohjautuva ei suositeltava tunnistautumismenetelm\u00e4.<\/p>\n\n\n\n<p>## Mit\u00e4 voin tehd\u00e4?<\/p>\n\n\n\n<p>Asenna haavoittuviin laitteisiin valmistajan tarjoama korjauspaketti<br>viipym\u00e4tt\u00e4 annettujen ohjeiden mukaisesti. Suositeltavaa olisi my\u00f6s<br>varmistaa, ettei laitteelle ole jo murtauduttu, mik\u00e4li laite on ollut<br>haavoittuvalla konfiguraatiolla saatavilla julkisesta verkosta ennen<br>p\u00e4ivityksen asentamista.<\/p>\n\n\n\n<p>Valmistajan haavoittuvuustiedote:<br>Preventative Hotfix for CVE-2024-24919 &#8211; Quantum Gateway Information<br>Disclosure<br><a href=\"https:\/\/support.checkpoint.com\/results\/sk\/sk182336\">https:\/\/support.checkpoint.com\/results\/sk\/sk182336<\/a><\/p>\n\n\n\n<p>Valmistajan taustoittava artikkeli:<br>Important Security Update \u2013 Stay Protected Against VPN Information<br>Disclosure (CVE-2024-24919)<br><a href=\"https:\/\/blog.checkpoint.com\/security\/enhance-your-vpn-security-posture\/\">https:\/\/blog.checkpoint.com\/security\/enhance-your-vpn-security-posture\/<\/a><\/p>\n\n\n\n<p>Valmistajan julkaisema ty\u00f6kalu haavoittuvan laitteen tunnistamiseksi:<br>Check Point validate remote access script<br><a href=\"https:\/\/support.checkpoint.com\/results\/download\/132862\">https:\/\/support.checkpoint.com\/results\/download\/132862<\/a><\/p>\n\n\n\n<p><a href=\"https:\/\/www.kyberturvallisuuskeskus.fi\/fi\/haavoittuvuus_15\/2024\">https:\/\/www.kyberturvallisuuskeskus.fi\/fi\/haavoittuvuus_15\/2024<\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>heck Point Quantum Gateway palomuurituotteissa on l\u00f6ydettyhaavoittuvuus, jota on havaittu hyv\u00e4ksik\u00e4ytett\u00e4v\u00e4n rajattuunasiakaskuntaan kohdistuvissa hy\u00f6kk\u00e4ysyrityksiss\u00e4. Valmistaja onjulkaissut korjaavan ohjelmistop\u00e4ivityksen sek\u00e4 ohjeita [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[21,9],"tags":[22,15],"class_list":["post-1259","post","type-post","status-publish","format-standard","hentry","category-data-protection","category-security","tag-data-protection","tag-tietoturva"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts\/1259","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/comments?post=1259"}],"version-history":[{"count":0,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts\/1259\/revisions"}],"wp:attachment":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/media?parent=1259"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/categories?post=1259"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/tags?post=1259"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}