CVE-2004-1534: Medium severity Zonelabs ZoneAlarm vulnerability
Published Dec 31, 2004
·Updated
ZoneAlarm and ZoneAlarm Pro before 5.5.062, with ad-blocking enabled, allows remote web sites to cause a denial of service (application instability or system hang) via certain JavaScript.
Affected Software
5 affected components
Zonelabs ZoneAlarm=4.0
Zonelabs ZoneAlarm=4.5
Zonelabs ZoneAlarm=4.5.538.001
Zonelabs ZoneAlarm=5.0.590.015
Zonelabs ZoneAlarm=5.5
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Feb 19, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1534?
CVE-2004-1534 is classified as a medium severity vulnerability due to its ability to cause denial of service.
2
How do I fix CVE-2004-1534?
To fix CVE-2004-1534, upgrade to ZoneAlarm version 5.5.062 or later.
3
What types of systems are affected by CVE-2004-1534?
CVE-2004-1534 affects ZoneAlarm and ZoneAlarm Pro versions prior to 5.5.062.
4
What kind of attack does CVE-2004-1534 enable?
CVE-2004-1534 allows remote web sites to cause application instability or a system hang.
5
Are earlier versions of ZoneAlarm vulnerable to CVE-2004-1534?
Yes, earlier versions such as 4.0, 4.5, and 5.0.590.015 are vulnerable to CVE-2004-1534.