| Trend Micro Products AntiVirus Library Buffer Overflow |
| Sunday, 27 February 2005 by Michel Roth | |||
|
ISS X-Force has reported a vulnerability in various Trend Micro products, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to a boundary error in the AntiVirus library when processing ARJ files. This can be exploited to cause a heap-based buffer overflow via a specially crafted ARJ file containing an overly long filename. Successful exploitation allows execution of arbitrary code. Read the advisory here.
Show/Hide comment form
|
|||
