Check Point Zone Labs ZoneAlarm Internet Security Suite 6.5.722.000, 6.1.737.000, and possibly other versions do not properly validate RegSaveKey, RegRestoreKey, and RegDeleteKey function calls, which allows local users to cause a denial of service (system crash) via a certain combination of these function calls with an HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesVETFDDNTEnum argument.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Zonealarm_security_suite | Zonelabs | 6.1.737.000 (including) | 6.1.737.000 (including) |
Zonealarm_security_suite | Zonelabs | 6.5.722.000 (including) | 6.5.722.000 (including) |