Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6386 (Trend Micro AntiVirus plus AntiSpyware, Trend Micro Internet Security Pro, Trend ...)

BugsAlert Home > CVE-2007-6386 (Trend Micro AntiVirus plus AntiSpyware, Trend Micro Internet Security Pro, Trend ...)
 
 

Stack-based buffer overflow in PccScan.dll before build 1451 in Trend Micro AntiVirus plus AntiSpyware 2008, Internet Security 2008, and Internet Security Pro 2008 allows user-assisted remote attackers to cause a denial of service (SfCtlCom.exe crash), and allows local users to gain privileges, via a malformed .zip archive with a long name, as demonstrated by a .zip file created via format string specifiers in a crafted .uue file.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6386

Learn more about CVE-2007-6386 (Trend Micro AntiVirus plus AntiSpyware, Trend Micro Internet Security Pro, Trend ...)
 
Tags: cve-2007-6386 trend micro antivirus antispyware trend micro
 internet security pro trend ...

Related Items

      FrSIRT - Debian Security Update Fixes HTTrack Buffer Overflow Vulnerability

      FrSIRT - Avaya CMS and IR Solaris "sadmind" Buffer Overflow Vulnerability

      CVE-2008-5680 (opera)

      CVE-2008-2200 (maian_weblog)

      VUPEN - Gentoo Security Update Fixes CUPS Code Execution Vulnerabilities

      Bugtraq: Novell GroupWise Messenger Client (GWIM) Remote Stack Overflow

      CVE-2008-5150 (maildirsync)

 

Pixel