CVE-2007-0708: High severity Comodo Comodo Firewall Pro vulnerability
cmdmon.sys in Comodo Firewall Pro (formerly Comodo Personal Firewall) before 2.4.16.174 does not validate arguments that originate in user mode for the (1) NtConnectPort and (2) NtCreatePort hooked SSDT functions, which allows local users to cause a denial of service (system crash) and possibly gain privileges via invalid arguments.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-0708?
CVE-2007-0708 is considered a significant vulnerability that can lead to system crashes and potential unauthorized access.
How do I fix CVE-2007-0708?
To mitigate CVE-2007-0708, update to Comodo Firewall Pro version 2.4.16.174 or later.
What types of systems are affected by CVE-2007-0708?
CVE-2007-0708 affects local installations of Comodo Firewall Pro prior to version 2.4.16.174.
Can CVE-2007-0708 be exploited remotely?
CVE-2007-0708 primarily allows local users to exploit the vulnerability, not remote attackers.
What are the potential consequences of exploiting CVE-2007-0708?
Exploiting CVE-2007-0708 can result in a denial of service, potentially causing a system crash.