CVE-2007-4216: Input Validation
vsdatant.sys 6.5.737.0 in Check Point Zone Labs ZoneAlarm before 7.0.362 allows local users to gain privileges via a crafted Interrupt Request Packet (Irp) in a METHODNEITHER (1) IOCTL 0x8400000F or (2) IOCTL 0x84000013 request, which can be used to overwrite arbitrary memory locations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-4216?
CVE-2007-4216 has a high severity due to its potential for local privilege escalation.
How do I fix CVE-2007-4216?
To fix CVE-2007-4216, upgrade to a version of Check Point ZoneAlarm that is later than 7.0.362.
Who is affected by CVE-2007-4216?
CVE-2007-4216 affects users of Check Point Zone Labs ZoneAlarm versions 6.5.737.0 and earlier.
What type of vulnerability is CVE-2007-4216?
CVE-2007-4216 is a local privilege escalation vulnerability caused by improper handling of Interrupt Request Packets.
Is there a workaround for CVE-2007-4216?
There are no known workarounds for CVE-2007-4216; the best mitigation is to apply the available updates.