CVE-2005-2932: High severity Checkpoint ZoneAlarm vulnerability
Multiple Check Point Zone Labs ZoneAlarm products before 7.0.362, including ZoneAlarm Security Suite 5.5.062.004 and 6.5.737, use insecure default permissions for critical files, which allows local users to gain privileges or bypass security controls.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2932?
CVE-2005-2932 is considered a high severity vulnerability due to the potential for local users to gain privileges.
How do I fix CVE-2005-2932?
To fix CVE-2005-2932, update the affected Check Point Zone Labs ZoneAlarm products to version 7.0.362 or later.
Which ZoneAlarm products are affected by CVE-2005-2932?
CVE-2005-2932 affects multiple ZoneAlarm products including Security Suite versions 5.5.062.004 and 6.5.737, as well as versions prior to 7.0.362.
What kind of attack does CVE-2005-2932 allow?
CVE-2005-2932 allows local users to bypass security controls or escalate their privileges due to insecure default permissions.
Is CVE-2005-2932 easy to exploit?
Yes, CVE-2005-2932 is relatively easy to exploit for local users familiar with the environment.