Whose firewall solution is being used?
Both Checkpoint and Sophos appear to be investigating interop issues with RADIUS protections in the July 9, 2024 Windows Updates discussed in:
- KB5040268: How to manage the Access-Request packets attack vulnerability associated with CVE-2024-3596
- CVE-2024-3596: RADIUS Protocol Spoofing Vulnerability
- RADIUS/UDP Considered Harmful
If using Checkpoint firewalls, see
Solved: Re: Blast-RADIUS - CVE-2024-3596 - Page 3 - Check Point CheckMates
- CheckPoint Solution ID: sk182516: Check Point response to CVE-2024-3596 - Blast-RADIUS attack
- Check Point plans to provide a fix in the upcoming Jumbo Hotfix Accumulator package for all supported versions.
- Checkpoint Solution ID: sk42184: RADIUS authentication fails
If using Sophos firewalls, see