zonelabs the makers of the popular free software firewall are refusing to fix a vulnerabilty in its zonealarm firewall by saying 'its a problem with windows not the program itself'
using the shell32.dll found in windows a malicious hacker would have to load a trojan on the victims pc and lure the firewall in to accepting the command using the windows shell32.dll file
also a poster on the bugtraq network has claimed the $39.95 version of zonealarm has better protection as you can control anything that acesses the internet
zonelabs has said that it is not a serious flaw it would require a skilled hacker in order to execute such action rather then your average 'script kiddie'
http://www.extremetech.com/article2/...1167027,00.asp