CVE-2006-5153: Medium severity kerio personal firewall vulnerability
The (1) fwdrv.sys and (2) khips.sys drivers in Sunbelt Kerio Personal Firewall 4.3.268 and earlier do not validate arguments passed through to SSDT functions, including NtCreateFile, NtDeleteFile, NtLoadDriver, NtMapViewOfSection, NtOpenFile, and NtSetInformationFile, which allows local users to cause a denial of service (crash) and possibly other impacts via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-5153?
CVE-2006-5153 is classified as a high severity vulnerability due to the potential for local users to execute arbitrary code.
How do I fix CVE-2006-5153?
To fix CVE-2006-5153, you should upgrade to a version of Sunbelt Kerio Personal Firewall that is newer than 4.3.268.
Who is affected by CVE-2006-5153?
CVE-2006-5153 affects users of Sunbelt Kerio Personal Firewall versions 4.3.268 and earlier.
What components are impacted by CVE-2006-5153?
CVE-2006-5153 impacts the fwdrv.sys and khips.sys drivers in affected versions of the firewall.
What kind of attacks can exploit CVE-2006-5153?
An attacker can exploit CVE-2006-5153 to achieve local privilege escalation and execute arbitrary code.