CVE-2006-7160

The Sandbox.sys driver in Outpost Firewall PRO 4.0, and possibly earlier versions, does not validate arguments to hooked SSDT functions, which allows local users to cause a denial of service (crash) via invalid arguments to the (1) NtAssignProcessToJobObject,, (2) NtCreateKey, (3) NtCreateThread, (4) NtDeleteFile, (5) NtLoadDriver, (6) NtOpenProcess, (7) NtProtectVirtualMemory, (8) NtReplaceKey, (9) NtTerminateProcess, (10) NtTerminateThread, (11) NtUnloadDriver, and (12) NtWriteVirtualMemory functions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:agnitum:outpost_firewall:*:*:pro:*:*:*:*:*

History

21 Nov 2024, 00:24

Type Values Removed Values Added
References () http://secunia.com/advisories/22913 - Vendor Advisory () http://secunia.com/advisories/22913 - Vendor Advisory
References () http://securityreason.com/securityalert/2376 - () http://securityreason.com/securityalert/2376 -
References () http://www.matousec.com/info/advisories/Outpost-Multiple-insufficient-argument-validation-of-hooked-SSDT-functions.php - Vendor Advisory () http://www.matousec.com/info/advisories/Outpost-Multiple-insufficient-argument-validation-of-hooked-SSDT-functions.php - Vendor Advisory
References () http://www.securityfocus.com/archive/1/451672/100/0/threaded - () http://www.securityfocus.com/archive/1/451672/100/0/threaded -
References () http://www.securityfocus.com/bid/21097 - () http://www.securityfocus.com/bid/21097 -
References () http://www.vupen.com/english/advisories/2006/4537 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/4537 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/30312 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/30312 -

Information

Published : 2007-03-07 20:19

Updated : 2024-11-21 00:24


NVD link : CVE-2006-7160

Mitre link : CVE-2006-7160

CVE.ORG link : CVE-2006-7160


JSON object : View

Products Affected

agnitum

  • outpost_firewall
CWE
CWE-20

Improper Input Validation