ZoneAlarm Pro 6.5.737.000, 6.1.744.001, and possibly earlier versions and other products, allows local users to cause a denial of service (system crash) by sending malformed data to the vsdatant device driver, which causes an invalid memory access.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/23734 | vdb entry |
http://www.vupen.com/english/advisories/2007/1608 | vdb entry |
http://www.matousec.com/info/advisories/ZoneAlarm-Insufficient-validation-of-vsdatant-driver-input-buffer.php | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/34028 | vdb entry |
http://osvdb.org/35240 | vdb entry |
http://www.securityfocus.com/archive/1/467269/100/0/threaded | mailing list |
http://secunia.com/advisories/25064 | third party advisory vendor advisory |