First published: Fri Aug 21 2009(Updated: )
TrueVector in Check Point ZoneAlarm 8.0.020.000, with vsmon.exe running, allows remote HTTP proxies to cause a denial of service (crash) and disable the HIDS module via a crafted response.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Alarm | =8.0.020.000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-7025 is classified as a denial of service vulnerability that can crash Check Point ZoneAlarm.
To mitigate CVE-2008-7025, update Check Point ZoneAlarm to the latest version that addresses this vulnerability.
CVE-2008-7025 specifically affects Check Point ZoneAlarm version 8.0.020.000.
Yes, CVE-2008-7025 can be exploited remotely via crafted HTTP responses.
The consequences of CVE-2008-7025 include a denial of service attack that can crash the application and disable the HIDS module.