CVE-2006-6623: High severity AVG Antivirus Plus Firewall vulnerability
Sygate Personal Firewall 5.6.2808 relies on the Process Environment Block (PEB) to identify a process, which allows local users to bypass the product's controls on a process by spoofing the (1) ImagePathName, (2) CommandLine, and (3) WindowTitle fields in the PEB.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6623?
CVE-2006-6623 is considered a medium severity vulnerability due to its potential to allow local users to bypass security controls.
How do I fix CVE-2006-6623?
To mitigate CVE-2006-6623, you should update to the latest version of Sygate Personal Firewall or consider alternative security solutions.
Who is affected by CVE-2006-6623?
CVE-2006-6623 affects users of Symantec Sygate Personal Firewall version 5.6.2808 and other personal firewall software that relies on the Process Environment Block.
What is the impact of CVE-2006-6623?
The impact of CVE-2006-6623 allows local users to manipulate process identification, potentially leading to unauthorized access or security breaches.
Is there a workaround for CVE-2006-6623?
There are no known workarounds for CVE-2006-6623 other than upgrading to a patched version of the affected firewall software.