Vulnerability Details CVE-2004-1109
The FWDRV.SYS driver in Kerio Personal Firewall 4.1.1 and earlier allows remote attackers to cause a denial of service (CPU consumption and system freeze from infinite loop) via a (1) TCP, (2) UDP, or (3) ICMP packet with a zero length IP Option field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.049
EPSS Ranking 89.0%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2004-1109
-
cpe:2.3:a:kerio:personal_firewall:4.0.10
-
cpe:2.3:a:kerio:personal_firewall:4.0.16
-
cpe:2.3:a:kerio:personal_firewall:4.0.6
-
cpe:2.3:a:kerio:personal_firewall:4.0.7
-
cpe:2.3:a:kerio:personal_firewall:4.0.8
-
cpe:2.3:a:kerio:personal_firewall:4.0.9
-
cpe:2.3:a:kerio:personal_firewall:4.1
-
cpe:2.3:a:kerio:personal_firewall:4.1.1