CVE-2008-7025: Medium severity alarm vulnerability
Published Aug 21, 2009
·Updated
TrueVector in Check Point ZoneAlarm 8.0.020.000, with vsmon.exe running, allows remote HTTP proxies to cause a denial of service (crash) and disable the HIDS module via a crafted response.
Affected Software
1 affected component
Checkpoint ZoneAlarm=8.0.020.000
Event History
Aug 21, 2009
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-7025?
CVE-2008-7025 is classified as a denial of service vulnerability that can crash Check Point ZoneAlarm.
2
How do I fix CVE-2008-7025?
To mitigate CVE-2008-7025, update Check Point ZoneAlarm to the latest version that addresses this vulnerability.
3
What software does CVE-2008-7025 affect?
CVE-2008-7025 specifically affects Check Point ZoneAlarm version 8.0.020.000.
4
Can CVE-2008-7025 be exploited remotely?
Yes, CVE-2008-7025 can be exploited remotely via crafted HTTP responses.
5
What are the consequences of CVE-2008-7025?
The consequences of CVE-2008-7025 include a denial of service attack that can crash the application and disable the HIDS module.