Description
A vulnerability has been reported in Trend Micro products,
which can be exploited by malicious people to cause
a DoS (Denial of Service) or potentially compromise
a vulnerable system.
The vulnerability is caused by improper input validation
when scanning a specially crafted UPX compressed executable
file. Successful exploitation may allow execution of arbitrary
code or cause the memory corruption.
The vulnerability reported affects all Trend Micro products
and versions that use Trend Micro Scan Engine and Pattern
File technology.
Suggested
Solutions
1)
For all affected TrendMicro product, it is
recommend to update the virus pattern file
to 4.245.00 or above.
Source
Trendmicro
|