{ "schema_version": "1.4.0", "id": "GHSA-wcw3-c4wg-3jxf", "modified": "2022-04-30T18:18:01Z", "published": "2022-04-30T18:18:01Z", "aliases": [ "CVE-2001-1431" ], "details": "Nokia Firewall Appliances running IPSO 3.3 and VPN-1/FireWall-1 4.1 Service Pack 3, IPSO 3.4 and VPN-1/FireWall-1 4.1 Service Pack 4, and IPSO 3.4 or IPSO 3.4.1 and VPN-1/FireWall-1 4.1 Service Pack 5, when SYN Defender is configured in Active Gateway mode, does not properly rewrite the third packet of a TCP three-way handshake to use the NAT IP address, which allows remote attackers to gain sensitive information.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2001-1431" }, { "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/8293" }, { "type": "WEB", "url": "http://www.kb.cert.org/vuls/id/258731" } ], "database_specific": { "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2001-10-08T04:00:00Z" } }