Security flaw hits Trend Micro antivirus

By

Vulnerabilities could allow remote code execution.

Security flaw hits Trend Micro antivirus
Anti virus vendor Trend Micro is warning users against a potentially serious vulnerability that exists in more than 30 of its security applications.

If the vulnerability is exploited, the company said that an attacker could remotely install and execute code or cause a system crash resulting in the infamous Windows "blue screen of death."

The problem exists in the Trend Micro Scan Engine, a core component of the company's anti-virus applications. When the Scan Engine encounters a certain type of malformed .exe file, it triggers a denial of service (DoS) crash. The DoS can then either be used to remotely install and execute malware code.

Because the vulnerability allows attackers to remotely install and execute code on vulnerable systems, security company Secunia rated the vulnerability "highly critical," its second-highest severity rating.

Trend Micro has issued a fix for the vulnerability which users can get by updating to the latest virus pattern update. The company said that it will patch the flaw in its upcoming Scan Engine 8.5 update.


Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:

Most Read Articles

Travel eSIMs secretly route traffic over Chinese and undisclosed networks: study

Travel eSIMs secretly route traffic over Chinese and undisclosed networks: study

Greater Western Water's billing system data issues laid bare

Greater Western Water's billing system data issues laid bare

Attackers weaponise Linux file names as malware vectors

Attackers weaponise Linux file names as malware vectors

Microsoft plans full quantum-resistant cryptography transition by 2033

Microsoft plans full quantum-resistant cryptography transition by 2033

Log In

  |  Forgot your password?