This vulnerability has been flagged as being a Myth/Fake.
Timeline
Disclosure Date
1999-10-20
Description
Check Point FireWall-1 was reported to have a flaw that allowed LDAP authenticated users to access more resources than the firewall was intended to allow. The issue is due to the "fw1allowed-dst" rule apparently ignoring the LDAP attribute and granting access to "any" instead. Check Point has responded that this is the desired behavior and working as intended.
Classification
Location:
Remote / Network Access
Attack Type:
Misconfiguration
Impact:
Loss of Confidentiality
Exploit:
Exploit Public
OSVDB:
Myth / Fake,
Security Software
Solution
At this time there are no known upgrades, patches, or workarounds available to correct this issue.