Vulnerability in the Wild

Trend Micro Products UPX Processing Buffer Overflow Vulnerability

Description
A vulnerability has been reported in Trend Micro products, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.

The vulnerability is caused by improper input validation when scanning a specially crafted UPX compressed executable file. Successful exploitation may allow execution of arbitrary code or cause the memory corruption.

The vulnerability reported affects all Trend Micro products and versions that use Trend Micro Scan Engine and Pattern File technology.


Suggested Solutions
1) For all affected TrendMicro product, it is recommend to update the virus pattern file to 4.245.00 or above.

Source
Trendmicro

 
Promotion
Promotion 1: Symantec Enterprise Vault Promotion

 Enquiry Hotline: 2102 5894      Email: marketing@nexus-hk.com
If you don't want to receive our marketing information, please email back to us with the subject of "Delete my record", we will promptly delete it. All the above informations are for reference only.