The FWDRV.SYS driver in Kerio Personal Firewall 4.1.1 and previous versions allows remote malicious users to cause a denial of service (CPU consumption and system freeze from infinite loop) via a (1) TCP, (2) UDP, or (3) ICMP packet with a zero length IP Option field.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
kerio personal firewall 4.0.6 |
||
kerio personal firewall 4.0.7 |
||
kerio personal firewall 4.0.8 |
||
kerio personal firewall 4.0.9 |
||
kerio personal firewall 4.0.10 |
||
kerio personal firewall 4.0.16 |
||
kerio personal firewall 4.1 |
||
kerio personal firewall 4.1.1 |