The FWDRV driver in Kerio Personal Firewall 4.2 and Server Firewall 1.1.1 allows local users to cause a denial of service (crash) by setting the PAGE_NOACCESS or PAGE_GUARD protection on the Page Environment Block (PEB), which triggers an exception, aka the PEB lockout vulnerability.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Personal_firewall | Kerio | 4.2 (including) | 4.2 (including) |
Serverfirewall | Kerio | 1.1.1 (including) | 1.1.1 (including) |