Zonelabs maintains a personal security software portfolio centered on endpoint protection products such as ZoneAlarm, ZoneAlarm Security Suite, and ZoneAlarm Antivirus, which have occupied a notable presence in the consumer and small-business firewall and antivirus market. The vendor's vulnerability footprint is modest in volume but concentrated enough to merit tracking, with public exploit code frequently becoming available for disclosed flaws. The recurring weakness classes—including improper locking and a range of implementation-level issues—reflect the complexity of kernel-level and system-integration code required for real-time threat monitoring and access control. Defenders running Zonelabs endpoint products should remain attentive to patching cycles, particularly where exploit tooling has surfaced; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zonelabs over time
Signals from CVEs in this vendor scope (23 CVEs).
23 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-3560HIGH Zone Labs (1) ZoneAlarm Pro 6.0, (2) ZoneAlarm Internet Security Suite 6.0, (3) ZoneAlarm Anti-Virus 6.0, (4) ZoneAlarm Anti-Spyware 6.0 through 6.1, and (5) ZoneAlarm 6.0 allow re | Nov 16, 2005 | 7.5 | 34 | NO | YES |
CVE-2004-0309HIGH Stack-based buffer overflow in the SMTP service support in vsmon.exe in Zone Labs ZoneAlarm before 4.5.538.001, ZoneLabs Integrity client 4.0 before 4.0.146.046, and 4.5 before 4.5 | Nov 23, 2004 | 10.0 | 34 | NO | NO |
CVE-2000-0339HIGH ZoneAlarm 2.1.10 and earlier does not filter UDP packets with a source port of 67, which allows remote attackers to bypass the firewall rules. | Apr 24, 2000 | 7.5 | 31 | NO | YES |
CVE-2005-1693HIGH Integer overflow in Computer Associates Vet Antivirus library, as used by CA InoculateIT 6.0, eTrust Antivirus r6.0 through 7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTr | May 24, 2005 | 10.0 | 30 | NO | NO |
CVE-2007-2083MEDIUM vsdatant.sys in Check Point Zone Labs ZoneAlarm Pro before 7.0.302.000 does not validate certain arguments before being passed to hooked SSDT function handlers, which allows local | Apr 18, 2007 | 6.9 | 26 | NO | YES |
CVE-2003-1309HIGH The DeviceIoControl function in the TrueVector Device Driver (VSDATANT) in ZoneAlarm before 3.7.211, Pro before 4.0.146.029, and Plus before 4.0.146.029 allows local users to gain | Dec 31, 2003 | 10.0 | 25 | NO | NO |
CVE-2002-1997HIGH ZoneAlarm Pro 3.0 MailSafe allows remote attackers to bypass filtering and possibly execute arbitrary code via email attachments containing a trailing dot after the file extension. | Dec 31, 2002 | 7.5 | 25 | NO | NO |
CVE-2004-1517HIGH Zone Labs IMsecure and IMsecure Pro before 1.5 allow remote attackers to bypass Active Link Filtering via an instant message containing a URL with hex encoded file extensions. | Dec 31, 2004 | 7.5 | 24 | NO | NO |
CVE-2002-1911MEDIUM ZoneAlarm Pro 3.0 and 3.1, when configured to block all traffic, allows remote attackers to cause a denial of service (CPU and memory consumption) via a large number of SYN packets | Dec 31, 2002 | 5.0 | 23 | NO | YES |
CVE-2004-1534MEDIUM ZoneAlarm and ZoneAlarm Pro before 5.5.062, with ad-blocking enabled, allows remote web sites to cause a denial of service (application instability or system hang) via certain Java | Dec 31, 2004 | 5.0 | 19 | NO | NO |
Signals from CVEs in this vendor scope (23 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zonelabs.
Media articles that mention a CVE ID that affects a product developed by Zonelabs — matched by CVE ID, not by vendor name.