![]() In detail, when processing the certain integer field in a request packet to TCP port 5168, the RPCFN_SYNC_TASK function in StRpcSrv.dll, as used by the ServerProtect service (SpntSvc.exe) does not validate the user supplied data properly and attempts to access heap based memory based on the data then triggers a heap buffer overflow, and leads the process to execute arbitrary code within the context of logged in user. ![]() This will open the Trend Micro Diagnostic Toolkit. In detail, when processing the RPC requests to certain TCP ports 5168/3628, the (1) RPCFN_ENG_NewManualScan, (2) RPCFN_ENG_TimedNewManualScan, and (3) RPCFN_SetComputerName functions in (a) StRpcSrv.dll the (4) RPCFN_CMON_SetSvcImpersonateUser and (5) RPCFN_OldCMON_SetSvcImpersonateUser functions in (b) Stcommon.dll the (6) RPCFN_ENG_TakeActionOnAFile and (7) RPCFN_ENG_AddTaskExportLogItem functions in (c) Eng50.dll the (8) NTF_SetPagerNotif圜onfig function in (d) Notification.dll or the (9) RPCFN_CopyAUSrc function in the (e) ServerProtect Agent service do not validate the user supplied data properly and attempts to copy the data to stacked based buffer, then cause several buffer overflow, and leads the process to execute arbitrary code within the context of logged in user.ĬVE-2007-4219: Jun Mao of iDefense Labs reported a remote integer overflow vulnerability in Trend Micro ServerProtect, which is due to the boundary condition error. Browse your installed trial version software in -> windows drive > Program Files > then find out. Administrators can centrally deploy, manage, and update the antivirus software on every server.ĬVE-2007-4218: Code Audit Labs, Jun Mao of iDefense Labs, and anonymous researchers reported multiple RPC remote buffer overflow vulnerabilites in Trend Micro ServerProtect, which are due to the boundary condition error. ![]() Trend Micro ServerProtect is designed to provide virus protection for enterprise class servers and storage systems. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |