Newsletter:

Skip Navigation LinksHome > News > Security > Security flaw hits Trend Micro antivirus

Security flaw hits Trend Micro antivirus

By Shaun Nichols
9 February 2007 01:36PM
Tags: security | flaw | hits | trend | micro | antivirus

Vulnerabilities could allow remote code execution.

Anti virus vendor Trend Micro is warning users against a potentially serious vulnerability that exists in more than 30 of its security applications.

If the vulnerability is exploited, the company said that an attacker could remotely install and execute code or cause a system crash resulting in the infamous Windows "blue screen of death."

The problem exists in the Trend Micro Scan Engine, a core component of the company's anti-virus applications. When the Scan Engine encounters a certain type of malformed .exe file, it triggers a denial of service (DoS) crash. The DoS can then either be used to remotely install and execute malware code.

Because the vulnerability allows attackers to remotely install and execute code on vulnerable systems, security company Secunia rated the vulnerability "highly critical," its second-highest severity rating.

Trend Micro has issued a fix for the vulnerability which users can get by updating to the latest virus pattern update. The company said that it will patch the flaw in its upcoming Scan Engine 8.5 update.


Copyright © 2008 vnunet.com

   


Ads by Google


Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 


Tripwire - Click here to win an iTouch



Product Reviews

Star Rating
The Lieberman Software Enterprise Random Pass­word Manager is a full-on password manager and randomiser for...
Star Rating
Proginet SecurForce is a little bit of a horse of a different color for this month's Group Test.
Star Rating
On the surface, RoboForm Enterprise starts out looking like a single sign-on product, but that is just on the...
Star Rating
The Symark PowerBroker is a policy-driven, privileged access control application.
Star Rating
The Symark PowerKeeper is a hardened appliance. It comes with a sealed operating system that provides a...
iTnews 2009 Job Survey

TopTopics
(6825) -  top
(3291) -  microsoft
(2305) -  broadband
(2170) -  content
(2132) -  company
(2129) -  data
(1915) -  terria
(1859) -  isp
(1813) -  nbn
(1725) -  filtering
(1697) -  telstra
(1585) -  internode
(1542) -  voip
(1445) -  centre
(1211) -  consumers