CVE-2006-3540
Last modified
CVE-2006-3540 is a vulnerability of currently unknown severity. Check Point Zone Labs ZoneAlarm Internet Security Suite 6.5.722.000, 6.1.737.000, and possibly other versions do not properly validate RegSaveKey, RegRestoreKey, and RegDeleteKey function calls, which allows local users to cause a denial of service (system crash) via a certain combination of these function calls with an HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VETFDDNT\Enum argument.. EPSS estimates a 0.60% chance of exploitation in the next 30 days.
Description
Check Point Zone Labs ZoneAlarm Internet Security Suite 6.5.722.000, 6.1.737.000, and possibly other versions do not properly validate RegSaveKey, RegRestoreKey, and RegDeleteKey function calls, which allows local users to cause a denial of service (system crash) via a certain combination of these function calls with an HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VETFDDNT\Enum argument.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Zonelabs | Zonealarm Security Suite | 6.1.737.000 |
| Zonelabs | Zonealarm Security Suite | 6.5.722.000 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-3540?
How severe is CVE-2006-3540?
How do I fix CVE-2006-3540?
Are you affected by CVE-2006-3540?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
