Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

ZoneLabs ZoneAlarm MailSafe Extension Dot Filtering Bypass Vulnerability

ZoneLabs ZoneAlarm is a firewall for Microsoft Windows based PCs. It supports a wide range of functions, including a MailSafe feature designed to block email containing malicious content or attachments.

A vulnerability has been reported in some versions of ZoneAlarm. MailSafe may be configured to block file attachments with a certain extension, for example all .exe files. If the same file is sent with an additional '.' appended to the filename, it will not be blocked.







 

Privacy Statement
Copyright 2009, SecurityFocus