CVE-2007-2467: Medium severity Zonelabs ZoneAlarm vulnerability
ZoneAlarm Pro 6.5.737.000, 6.1.744.001, and possibly earlier versions and other products, allows local users to cause a denial of service (system crash) by sending malformed data to the vsdatant device driver, which causes an invalid memory access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2467?
CVE-2007-2467 has a high severity rating due to its ability to cause a denial of service by crashing the system.
How do I fix CVE-2007-2467?
To mitigate CVE-2007-2467, it is recommended to upgrade to the latest version of ZoneAlarm that addresses this vulnerability.
Which versions of ZoneAlarm are affected by CVE-2007-2467?
CVE-2007-2467 affects ZoneAlarm Pro versions 6.1.744.001, 6.5.737.000, and possibly earlier versions.
What type of vulnerability is CVE-2007-2467 classified as?
CVE-2007-2467 is classified as a local denial of service vulnerability due to improper input validation in the vsdatant device driver.
Can CVE-2007-2467 be exploited remotely?
CVE-2007-2467 cannot be exploited remotely as it requires local user access to trigger the denial of service.