Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Sunbelt Kerio Personal Firewall CreateRemoteThread Denial of Service Vulnerability

Sunbelt Kerio Personal Firewall is prone to a denial-of-service vulnerability. This issue can occur when a program calls the 'CreateRemoteThread' Windows API call.

Exploitation of this vulnerability could cause the firewall application to crash. This could expose the computer to further attacks.

The individual who discovered this vulnerability claims to have tested it on Sunbelt Kerio Personal Firewall versions 4.3.246 and 4.2.3.912. They were unable to reproduce the vulnerability on version 4.2.3.912, which is an older release. The vulnerable functionality may have been introduced at some point after the 4.2.3.912 release, but this has not been confirmed.







 

Privacy Statement
Copyright 2009, SecurityFocus