CVE-2001-1548: Low severity alarm vulnerability
Published Dec 31, 2001
·Updated
ZoneAlarm 2.1 through 2.6 and ZoneAlarm Pro 2.4 and 2.6 allows local users to bypass filtering via non-standard TCP packets created with non-Windows protocol adapters.
Affected Software
8 affected components
Zonelabs ZoneAlarm=2.1
Zonelabs ZoneAlarm=2.2
Zonelabs ZoneAlarm=2.3
Zonelabs ZoneAlarm=2.4
Zonelabs ZoneAlarm=2.4
Zonelabs ZoneAlarm=2.5
Zonelabs ZoneAlarm=2.6
Zonelabs ZoneAlarm=2.6
Event History
Dec 31, 2001
CVE Published
05:00 AM
Jul 14, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1548?
CVE-2001-1548 is categorized as a high severity vulnerability due to its potential to allow local users to bypass security filtering.
2
How do I fix CVE-2001-1548?
To fix CVE-2001-1548, upgrade to a version of ZoneAlarm that is not affected, such as versions later than 2.6.
3
What versions of ZoneAlarm are affected by CVE-2001-1548?
CVE-2001-1548 affects ZoneAlarm versions 2.1 through 2.6 and ZoneAlarm Pro versions 2.4 and 2.6.
4
Who is affected by CVE-2001-1548?
Local users of the affected versions of ZoneAlarm are at risk of exploiting this vulnerability.
5
What kind of attacks can be performed using CVE-2001-1548?
Exploitation of CVE-2001-1548 can allow attackers to send non-standard TCP packets that bypass the software's filtering capabilities.