← Back

CVE-2007-5044

nvd nist
Published: Sep 24, 2007Modified: Apr 23, 2026

JSON object

Loading...
6.9
Vector
AV:L/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 3.4 / Impact: 10.0
Source: NVD

Description

ZoneAlarm Pro 7.0.362.000 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the (1) NtCreatePort and (2) NtDeleteFile kernel SSDT hooks, a partial regression of CVE-2007-2083.

Affected (1)

Products: Zonelabs: Zonealarm
1 product
Zonealarm
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 7.0.362.000

Related CWEs

Timeline

No history available yet.