CVE-2007-4216

vsdatant.sys 6.5.737.0 in Check Point Zone Labs ZoneAlarm before 7.0.362 allows local users to gain privileges via a crafted Interrupt Request Packet (Irp) in a METHOD_NEITHER (1) IOCTL 0x8400000F or (2) IOCTL 0x84000013 request, which can be used to overwrite arbitrary memory locations.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:checkpoint:zonealarm:*:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:zonealarm:5.0.63.0:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:zonealarm:6.1.744.001:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-08-21 17:17

Updated : 2024-02-04 17:13


NVD link : CVE-2007-4216

Mitre link : CVE-2007-4216

CVE.ORG link : CVE-2007-4216


JSON object : View

Products Affected

checkpoint

  • zonealarm
CWE
CWE-20

Improper Input Validation