E-Mail:
Get our new Windows 7 eBook (PDF) for $7 with 70+ Tips. Download Now!

ZoneAlarm Denial of Service Vulnerability

  • No Related Post

CRITICAL:
Less critical

IMPACT:
DoS

WHERE:
From remote

SOFTWARE:
ZoneAlarm Security Suite 5.x, ZoneAlarm Pro 5.x, ZoneAlarm Pro 4.x, ZoneAlarm Pro 3.x

DESCRIPTION:
Nicolas Robillard has reported a vulnerability in ZoneAlarm Pro and
ZoneAlarm Security Suite, which can be exploited by malicious people
to cause a DoS (Denial of Service).

The vulnerability is caused due to an error in the Ad-Blocking
feature (disabled by default) when processing JavaScript and can be
exploited by tricking a user into visiting a malicious web site
containing specially crafted JavaScript.

Successful exploitation causes the system to become unstable or stop
responding completely.

SOLUTION:
Update to version 5.5.062 or later via the “Check For Update”
feature.

PROVIDED AND/OR DISCOVERED BY:
Nicolas Robillard

ORIGINAL ADVISORY:
http://download.zonelabs.com/bin/free/securityAlert/18.html

What Do You Think?

 

Posted Recently

35 queries / 0.518 seconds.