Demarc Sentarus Customers Receive Rapid Response Patch to Snort Condition.CARPINTERIA, Calif. -- Demarc Security, a global provider of comprehensive intrusion detection See IDS and IPS. and prevention solutions, today announced that it has already made available a patch for the recently discovered potential security problem in Snort An open source network intrusion detection system (NIDS) that is noted for its effectiveness. Developed by Martin Roesch, Snort can also be used just as a packet logger or packet sniffer. For more information, visit www.snort.org. See IDS. 2.4.0. Users of Demarc's Snort-based Sentarus systems using the Demarc automatic update feature have already received the patch. The patch addresses the reported buffer overflow A common cause of malfunctioning software. If the amount of data written into a buffer exceeds the size of the buffer, the additional data will be written into adjacent areas, which could be buffers, constants, flags or variables. condition in a Snort sensor designed to detect Back Orifice A program that installs itself on a Windows machine as a server, allowing a cracker with the client counterpart to manipulate the machine more completely than the user at the keyboard. It can come in the form of a Trojan or ActiveX control. , an older remote-controlled Trojan horse See Trojan. Trojan Horse hollow horse concealed soldiers, enabling them to enter and capture Troy. [Gk. Myth.: Iliad] See : Deceit (application, security) Trojan horse program. Theoretically, an attacker could commandeer com·man·deer tr.v. com·man·deered, com·man·deer·ing, com·man·deers 1. To force into military service. 2. To seize for military use; confiscate. 3. To take arbitrarily or by force. a system running Snort 2.4.0 and higher by sending a specially crafted network packet. Although no such attacks have been reported, Demarc believes it is prudent to install the fix. "Demarc works tirelessly to stay ahead of the ever changing landscape of network and host security," stated Brendan Rizzo, CEO (1) (Chief Executive Officer) The highest individual in command of an organization. Typically the president of the company, the CEO reports to the Chairman of the Board. for Demarc. "This patch is just one more step in reinforcing the effectiveness of Sentarus as the firewall's best friend in securing against internal and external intruders." While patch installation is recommended, Demarc customers should be reminded of the following regarding this specific threat: --The vulnerability only relates to the "Back Orifice detection preprocessor Software that performs some preliminary processing on the input before it is processed by the main program. See preprocessing. (programming) preprocessor - A program that transforms input data in some way before it is read by the main program. " which was never shipped in the "on" position in Demarc product. --Customers using Demarc solutions would be exposed only if they had manually turned this option "on" through the Management Console. --Demarc has already released a fix that should already be in place, unless the customer has turned "off" their automatic updates service. --Customers with additional questions may contact customer support (http://support.demarc.com) for assistance with the manual update procedure. As an upgrade to existing firewall defenses, Sentarus provides a comprehensive detection and prevention solution that protects the network and host systems from the inside out. About Demarc Demarc is a global provider of comprehensive intrusion detection and prevention solutions. Demarc's Sentarus product line provides fully integrated network and host-based security solutions for small to medium businesses, government agencies, global enterprises and service providers. Available in hardware and software editions, Sentarus products ensure efficient, intelligent IT risk mitigation. Demarc customers include Fortune 500 enterprises, military and global government agencies in more than 25 countries around the world. Demarc is headquartered in Carpinteria, CA. Please visit the Demarc website at www.demarc.com for more information. |
|
||||||||||||||

Printer friendly
Cite/link
Email
Feedback
Reader Opinion