The FWDRV driver in Kerio Personal Firewall 4.2 and Server Firewall 1.1.1 allows local users to cause a denial of service (crash) by setting the PAGE_NOACCESS or PAGE_GUARD protection on the Page Environment Block (PEB), which triggers an exception, aka the "PEB lockout vulnerability."
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
kerio personal firewall 4.2 |
||
kerio serverfirewall 1.1.1 |