First published: Fri Jul 21 2006(Updated: )
Norton Personal Firewall 2006 9.1.0.33 allows local users to cause a denial of service (crash) via certain RegSaveKey, RegRestoreKey and RegDeleteKey operations on the (1) HKLM\SYSTEM\CurrentControlSet\Services\SNDSrvc and (2) HKLM\SYSTEM\CurrentControlSet\Services\SymEvent registry keys.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Norton Personal Firewall | =2006_9.1.0.33 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-3725 is classified as a high severity vulnerability due to its potential to cause a denial of service.
The resolution for CVE-2006-3725 involves ensuring proper permissions on the registry keys accessed by Norton Personal Firewall.
CVE-2006-3725 affects users of Norton Personal Firewall version 2006 9.1.0.33.
Local users can exploit CVE-2006-3725 by performing certain registry operations that manipulate key service values.
The impact of CVE-2006-3725 is the potential crashing of the Norton Personal Firewall service, resulting in a denial of service.