2.1

CVE-2005-0114

vsdatant.sys in Zone Lab ZoneAlarm before 5.5.062.011, ZoneAlarm Wireless before 5.5.080.000, Check Point Integrity Client 4.x before 4.5.122.000 and 5.x before 5.1.556.166 do not properly verify that the ServerPortName argument to the NtConnectPort function is a valid memory address, which allows local users to cause a denial of service (system crash) when ZoneAlarm attempts to dereference an invalid pointer.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Checkpoint ≫ Check Point Integrity Client Version <= 5.1.556.166
Checkpoint ≫ Check Point Integrity Client Version 4.5.122.000
Zonelabs ≫ Zonealarm Version 5.5.062.011
Zonelabs ≫ Zonealarm Wireless Security Version <= 5.5.080.000
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.33% 0.25
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://download.zonelabs.com/bin/free/securityAlert/19.html
Patch
Vendor Advisory
http://secunia.com/advisories/14256
http://www.idefense.com/application/poi/display?id=199&type=vulnerabilities
Patch
Vendor Advisory
http://www.securityfocus.com/bid/12531