2.1

CVE-2005-3286

The FWDRV driver in Kerio Personal Firewall 4.2 and Server Firewall 1.1.1 allows local users to cause a denial of service (crash) by setting the PAGE_NOACCESS or PAGE_GUARD protection on the Page Environment Block (PEB), which triggers an exception, aka the "PEB lockout vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Kerio ≫ Personal Firewall Version 4.2
Kerio ≫ Serverfirewall Version 1.1.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.37% 0.288
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.kerio.com/security_advisory.html
Patch
Vendor Advisory
http://lists.grok.org.uk/pipermail/full-disclosure/2005-October/037958.html
Vendor Advisory
http://pb.specialised.info/all/adv/kerio-fwdrv-dos-adv.txt
Vendor Advisory
http://seclists.org/bugtraq/2005/Oct/166
http://secunia.com/advisories/17155
Patch
Vendor Advisory
http://securityreason.com/securityalert/78
http://www.osvdb.org/19961
http://www.securityfocus.com/bid/15094