Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

IPS problem "OS-LINUX Linux Kernel Netfilter iptables-restore Stack-based Buffer Overflow"

Hi All, hope you can help.

Ive recently been getting a lot of alerts with this as can be seen in the image below. searching with some of the IP addresses on greynoise it shows it as commonly seen and it is nothing to worry about. 

i have seen that there is another question that was created a while ago https://community.sophos.com/sophos-xg-firewall/f/discussions/135165/ips-problem-os-linux-linux-kernel-netfilter-iptables-restore-stack-based-buffer-overflow-epic-gamestore-minimal-fix but this suggests adding an exception in which id rather not do. 

I have run a Norton full system scan on the device in question and that has not picked anything up. Does anyone have any ideas of how to resolve this issue?



Edited TAGs
[edited by: Erick Jan at 12:44 AM (GMT -8) on 6 Dec 2024]
Parents
  • update

    I have looked into it further and it seems it is epic games program that is causing the issue. Further investigations show that its trying to update a game and is getting an error saying "We're sorry. it looks like we're having trouble connecting.We'll continue to retry". When I pause the update I do not get these IPS hits. Does anyone else have this issue with Epic Games and know how to resolve this? The game doing the update is Fortnite.

Reply
  • update

    I have looked into it further and it seems it is epic games program that is causing the issue. Further investigations show that its trying to update a game and is getting an error saying "We're sorry. it looks like we're having trouble connecting.We'll continue to retry". When I pause the update I do not get these IPS hits. Does anyone else have this issue with Epic Games and know how to resolve this? The game doing the update is Fortnite.

Children
No Data