exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

za6.txt

za6.txt
Posted May 3, 2007
Site matousec.com

ZoneAlarm 6 insufficiently protects the \Device\vsdatant driver from manipulation by malicious applications.

tags | advisory
SHA-256 | 655d93d220df07a7674c237d2624e5f29d3aa3437c307a52a5e3e13a794493f6

za6.txt

Change Mirror Download
Hello,

We would like to inform you about a vulnerability in ZoneAlarm 6.


Description:

ZoneAlarm insufficiently protects its driver \Device\vsdatant against a manipulation by malicious applications and it
fails to validate its input buffer. It is possible to open the driver's device and send arbitrary data to it, which are
implicitly believed to be valid. It is possible to assemble the data in the input buffer such that the driver performs
an invalid memory operation and crashes the whole operating system. Further impacts of this bug (like arbitrary code
execution in the kernel mode) were not examined.


Vulnerable software:

* ZoneAlarm Pro 6.5.737.000
* ZoneAlarm Pro 6.1.744.001
* probably all versions of ZoneAlarm products branches 6.x
* possibly older versions of ZoneAlarm products


Not vulnerable software:

* ZoneAlarm Pro 7.0.302.000 and higher
* probably all versions of ZoneAlarm products branches 7.x and higher



More details and a proof of concept including its source code are available here:
http://www.matousec.com/info/advisories/ZoneAlarm-Insufficient-validation-of-vsdatant-driver-input-buffer.php


Regards,

--
Matousec - Transparent security Research
http://www.matousec.com/
Login or Register to add favorites

File Archive:

September 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Sep 1st
    261 Files
  • 2
    Sep 2nd
    17 Files
  • 3
    Sep 3rd
    38 Files
  • 4
    Sep 4th
    52 Files
  • 5
    Sep 5th
    23 Files
  • 6
    Sep 6th
    27 Files
  • 7
    Sep 7th
    0 Files
  • 8
    Sep 8th
    1 Files
  • 9
    Sep 9th
    16 Files
  • 10
    Sep 10th
    0 Files
  • 11
    Sep 11th
    0 Files
  • 12
    Sep 12th
    0 Files
  • 13
    Sep 13th
    0 Files
  • 14
    Sep 14th
    0 Files
  • 15
    Sep 15th
    0 Files
  • 16
    Sep 16th
    0 Files
  • 17
    Sep 17th
    0 Files
  • 18
    Sep 18th
    0 Files
  • 19
    Sep 19th
    0 Files
  • 20
    Sep 20th
    0 Files
  • 21
    Sep 21st
    0 Files
  • 22
    Sep 22nd
    0 Files
  • 23
    Sep 23rd
    0 Files
  • 24
    Sep 24th
    0 Files
  • 25
    Sep 25th
    0 Files
  • 26
    Sep 26th
    0 Files
  • 27
    Sep 27th
    0 Files
  • 28
    Sep 28th
    0 Files
  • 29
    Sep 29th
    0 Files
  • 30
    Sep 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close