CVE-2007-0851
Summary
| CVE | CVE-2007-0851 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-02-08 18:28:00 UTC |
| Updated | 2017-07-29 01:30:00 UTC |
| Description | Buffer overflow in the Trend Micro Scan Engine 8.000 and 8.300 before virus pattern file 4.245.00, as used in other products such as Cyber Clean Center (CCC) Cleaner, allows remote attackers to execute arbitrary code via a malformed UPX compressed executable. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Trend Micro | Client-server-messaging Suite Smb | gold | All | windows | All |
| Application | Trend Micro | Client-server-messaging Suite Smb | gold | All | windows | All |
| Application | Trend Micro | Client-server Suite Smb | gold | All | windows | All |
| Application | Trend Micro | Client-server Suite Smb | gold | All | windows | All |
| Application | Trend Micro | Control Manager | 2.5.0 | All | All | All |
| Application | Trend Micro | Control Manager | 3.5 | All | All | All |
| Application | Trend Micro | Control Manager | gold | All | as_400 | All |
| Application | Trend Micro | Control Manager | gold | All | solaris | All |
| Application | Trend Micro | Control Manager | gold | All | s_390 | All |
| Application | Trend Micro | Control Manager | gold | All | windows | All |
| Application | Trend Micro | Control Manager | gold | All | windows_nt | All |
| Application | Trend Micro | Control Manager | netware | All | All | All |
| Application | Trend Micro | Control Manager | 2.5.0 | All | All | All |
| Application | Trend Micro | Control Manager | 3.5 | All | All | All |
| Application | Trend Micro | Control Manager | gold | All | as_400 | All |
| Application | Trend Micro | Control Manager | gold | All | solaris | All |
| Application | Trend Micro | Control Manager | gold | All | s_390 | All |
| Application | Trend Micro | Control Manager | gold | All | windows | All |
| Application | Trend Micro | Control Manager | gold | All | windows_nt | All |
| Application | Trend Micro | Control Manager | netware | All | All | All |
| Application | Trend Micro | Interscan Emanager | 3.5 | All | hp | All |
| Application | Trend Micro | Interscan Emanager | 3.5.2 | All | windows | All |
| Application | Trend Micro | Interscan Emanager | 3.51 | All | All | All |
| Application | Trend Micro | Interscan Emanager | 3.51_j | All | All | All |
| Application | Trend Micro | Interscan Emanager | 3.6 | All | linux | All |
| Application | Trend Micro | Interscan Emanager | 3.6 | All | sun | All |
| Application | Trend Micro | Interscan Emanager | 3.5 | All | hp | All |
| Application | Trend Micro | Interscan Emanager | 3.5.2 | All | windows | All |
| Application | Trend Micro | Interscan Emanager | 3.51 | All | All | All |
| Application | Trend Micro | Interscan Emanager | 3.51_j | All | All | All |
| Application | Trend Micro | Interscan Emanager | 3.6 | All | linux | All |
| Application | Trend Micro | Interscan Emanager | 3.6 | All | sun | All |
| Application | Trend Micro | Interscan Messaging Security Suite | All | All | linux_5.1.1 | All |
| Application | Trend Micro | Interscan Messaging Security Suite | 3.81 | All | All | All |
| Application | Trend Micro | Interscan Messaging Security Suite | 5.5 | All | All | All |
| Application | Trend Micro | Interscan Messaging Security Suite | 5.5_build_1183 | All | All | All |
| Application | Trend Micro | Interscan Messaging Security Suite | gold | All | linux | All |
| Application | Trend Micro | Interscan Messaging Security Suite | gold | All | solaris | All |
| Application | Trend Micro | Interscan Messaging Security Suite | gold | All | windows | All |
| Application | Trend Micro | Interscan Messaging Security Suite | All | All | linux_5.1.1 | All |
| Application | Trend Micro | Interscan Messaging Security Suite | 3.81 | All | All | All |
| Application | Trend Micro | Interscan Messaging Security Suite | 5.5 | All | All | All |
| Application | Trend Micro | Interscan Messaging Security Suite | 5.5_build_1183 | All | All | All |
| Application | Trend Micro | Interscan Messaging Security Suite | gold | All | linux | All |
| Application | Trend Micro | Interscan Messaging Security Suite | gold | All | solaris | All |
| Application | Trend Micro | Interscan Messaging Security Suite | gold | All | windows | All |
| Application | Trend Micro | Interscan Viruswall | 3.0.1 | All | linux | All |
| Application | Trend Micro | Interscan Viruswall | 3.0.1 | All | unix | All |
| Application | Trend Micro | Interscan Viruswall | 3.1.0 | All | linux | All |
| Application | Trend Micro | Interscan Viruswall | 3.2.3 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.3 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.32 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.6 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.6 | All | hp_ux | All |
| Application | Trend Micro | Interscan Viruswall | 3.6 | All | solaris | All |
| Application | Trend Micro | Interscan Viruswall | 3.6 | All | windows_nt | All |
| Application | Trend Micro | Interscan Viruswall | 3.6.0_build1166 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.6.0_build_1182 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.6.5 | All | linux | All |
| Application | Trend Micro | Interscan Viruswall | 3.7.0 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.7.0_build1190 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.8.0_build1130 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.81 | All | linux | All |
| Application | Trend Micro | Interscan Viruswall | 5.1 | All | windows_nt | All |
| Application | Trend Micro | Interscan Viruswall | gold | All | aix | All |
| Application | Trend Micro | Interscan Viruswall | gold | All | linux_for_smb | All |
| Application | Trend Micro | Interscan Viruswall | gold | All | smb | All |
| Application | Trend Micro | Interscan Viruswall | gold | All | windows | All |
| Application | Trend Micro | Interscan Viruswall | gold | All | windows_nt_for_smb | All |
| Application | Trend Micro | Interscan Viruswall | 3.0.1 | All | linux | All |
| Application | Trend Micro | Interscan Viruswall | 3.0.1 | All | unix | All |
| Application | Trend Micro | Interscan Viruswall | 3.1.0 | All | linux | All |
| Application | Trend Micro | Interscan Viruswall | 3.2.3 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.3 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.32 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.6 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.6 | All | hp_ux | All |
| Application | Trend Micro | Interscan Viruswall | 3.6 | All | solaris | All |
| Application | Trend Micro | Interscan Viruswall | 3.6 | All | windows_nt | All |
| Application | Trend Micro | Interscan Viruswall | 3.6.0_build1166 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.6.0_build_1182 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.6.5 | All | linux | All |
| Application | Trend Micro | Interscan Viruswall | 3.7.0 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.7.0_build1190 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.8.0_build1130 | All | All | All |
| Application | Trend Micro | Interscan Viruswall | 3.81 | All | linux | All |
| Application | Trend Micro | Interscan Viruswall | 5.1 | All | windows_nt | All |
| Application | Trend Micro | Interscan Viruswall | gold | All | aix | All |
| Application | Trend Micro | Interscan Viruswall | gold | All | linux_for_smb | All |
| Application | Trend Micro | Interscan Viruswall | gold | All | smb | All |
| Application | Trend Micro | Interscan Viruswall | gold | All | windows | All |
| Application | Trend Micro | Interscan Viruswall | gold | All | windows_nt_for_smb | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.4 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.5 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.51 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.52 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.52_build1466 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.6 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 5.1.0 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.4 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.5 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.51 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.52 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.52_build1466 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 3.6 | All | All | All |
| Application | Trend Micro | Interscan Viruswall For Windows Nt | 5.1.0 | All | All | All |
| Application | Trend Micro | Interscan Viruswall Scan Engine | 7.510.0-1002 | All | All | All |
| Application | Trend Micro | Interscan Viruswall Scan Engine | 7.510.0-1002 | All | All | All |
| Application | Trend Micro | Interscan Webmanager | 1.2 | All | All | All |
| Application | Trend Micro | Interscan Webmanager | 2.0 | All | All | All |
| Application | Trend Micro | Interscan Webmanager | 2.1 | All | All | All |
| Application | Trend Micro | Interscan Webmanager | 1.2 | All | All | All |
| Application | Trend Micro | Interscan Webmanager | 2.0 | All | All | All |
| Application | Trend Micro | Interscan Webmanager | 2.1 | All | All | All |
| Application | Trend Micro | Interscan Webprotect | gold | All | isa | All |
| Application | Trend Micro | Interscan Webprotect | gold | All | isa | All |
| Application | Trend Micro | Interscan Web Security Suite | All | All | linux | All |
| Application | Trend Micro | Interscan Web Security Suite | All | All | linux_1.0.0_ja | All |
| Application | Trend Micro | Interscan Web Security Suite | gold | All | linux | All |
| Application | Trend Micro | Interscan Web Security Suite | gold | All | solaris | All |
| Application | Trend Micro | Interscan Web Security Suite | gold | All | windows | All |
| Application | Trend Micro | Interscan Web Security Suite | All | All | linux | All |
| Application | Trend Micro | Interscan Web Security Suite | All | All | linux_1.0.0_ja | All |
| Application | Trend Micro | Interscan Web Security Suite | gold | All | linux | All |
| Application | Trend Micro | Interscan Web Security Suite | gold | All | solaris | All |
| Application | Trend Micro | Interscan Web Security Suite | gold | All | windows | All |
| Application | Trend Micro | Officescan | 3.0 | All | corporate | All |
| Application | Trend Micro | Officescan | 4.5.0 | All | microsof_sbs | All |
| Application | Trend Micro | Officescan | 7.3 | All | All | All |
| Application | Trend Micro | Officescan | corporate_3.0 | All | windows_nt_server | All |
| Application | Trend Micro | Officescan | corporate_3.1.1 | All | windows_nt_server | All |
| Application | Trend Micro | Officescan | corporate_3.11 | All | All | All |
| Application | Trend Micro | Officescan | corporate_3.11 | All | windows_nt_server | All |
| Application | Trend Micro | Officescan | corporate_3.13 | All | All | All |
| Application | Trend Micro | Officescan | corporate_3.13 | All | windows_nt_server | All |
| Application | Trend Micro | Officescan | corporate_3.5 | All | All | All |
| Application | Trend Micro | Officescan | corporate_3.5 | All | windows_nt_server | All |
| Application | Trend Micro | Officescan | corporate_3.54 | All | All | All |
| Application | Trend Micro | Officescan | corporate_5.02 | All | All | All |
| Application | Trend Micro | Officescan | corporate_5.5 | All | All | All |
| Application | Trend Micro | Officescan | corporate_5.58 | All | All | All |
| Application | Trend Micro | Officescan | corporate_6.5 | All | All | All |
| Application | Trend Micro | Officescan | corporate_7.0 | All | All | All |
| Application | Trend Micro | Officescan | corporate_7.3 | All | All | All |
| Application | Trend Micro | Officescan | 3.0 | All | corporate | All |
| Application | Trend Micro | Officescan | 4.5.0 | All | microsof_sbs | All |
| Application | Trend Micro | Officescan | 7.3 | All | All | All |
| Application | Trend Micro | Officescan | corporate_3.0 | All | windows_nt_server | All |
| Application | Trend Micro | Officescan | corporate_3.1.1 | All | windows_nt_server | All |
| Application | Trend Micro | Officescan | corporate_3.11 | All | All | All |
| Application | Trend Micro | Officescan | corporate_3.11 | All | windows_nt_server | All |
| Application | Trend Micro | Officescan | corporate_3.13 | All | All | All |
| Application | Trend Micro | Officescan | corporate_3.13 | All | windows_nt_server | All |
| Application | Trend Micro | Officescan | corporate_3.5 | All | All | All |
| Application | Trend Micro | Officescan | corporate_3.5 | All | windows_nt_server | All |
| Application | Trend Micro | Officescan | corporate_3.54 | All | All | All |
| Application | Trend Micro | Officescan | corporate_5.02 | All | All | All |
| Application | Trend Micro | Officescan | corporate_5.5 | All | All | All |
| Application | Trend Micro | Officescan | corporate_5.58 | All | All | All |
| Application | Trend Micro | Officescan | corporate_6.5 | All | All | All |
| Application | Trend Micro | Officescan | corporate_7.0 | All | All | All |
| Application | Trend Micro | Officescan | corporate_7.3 | All | All | All |
| Application | Trend Micro | Pc-cillin | 2000 | All | All | All |
| Application | Trend Micro | Pc-cillin | 2002 | All | All | All |
| Application | Trend Micro | Pc-cillin | 2003 | All | All | All |
| Application | Trend Micro | Pc-cillin | 2005 | All | All | All |
| Application | Trend Micro | Pc-cillin | 2006 | All | All | All |
| Application | Trend Micro | Pc-cillin | 6.0 | All | All | All |
| Application | Trend Micro | Pc-cillin | 2000 | All | All | All |
| Application | Trend Micro | Pc-cillin | 2002 | All | All | All |
| Application | Trend Micro | Pc-cillin | 2003 | All | All | All |
| Application | Trend Micro | Pc-cillin | 2005 | All | All | All |
| Application | Trend Micro | Pc-cillin | 2006 | All | All | All |
| Application | Trend Micro | Pc-cillin | 6.0 | All | All | All |
| Application | Trend Micro | Pc-cillin Internet Security | 14_14.00.1485 | All | All | All |
| Application | Trend Micro | Pc-cillin Internet Security | 2005_12.0.0_0_build_1244 | All | All | All |
| Application | Trend Micro | Pc-cillin Internet Security | 2006_14.10.0.1023 | All | All | All |
| Application | Trend Micro | Pc-cillin Internet Security | 2007 | All | All | All |
| Application | Trend Micro | Pc-cillin Internet Security | 14_14.00.1485 | All | All | All |
| Application | Trend Micro | Pc-cillin Internet Security | 2005_12.0.0_0_build_1244 | All | All | All |
| Application | Trend Micro | Pc-cillin Internet Security | 2006_14.10.0.1023 | All | All | All |
| Application | Trend Micro | Pc-cillin Internet Security | 2007 | All | All | All |
| Application | Trend Micro | Pc Cillin - Internet Security 2006 | All | All | All | All |
| Application | Trend Micro | Pc Cillin - Internet Security 2006 | All | All | All | All |
| Application | Trend Micro | Portalprotect | 1.0 | All | All | All |
| Application | Trend Micro | Portalprotect | 1.2 | All | sharepoint | All |
| Application | Trend Micro | Portalprotect | 1.0 | All | All | All |
| Application | Trend Micro | Portalprotect | 1.2 | All | sharepoint | All |
| Application | Trend Micro | Scanmail | 1.0.0 | All | All | All |
| Application | Trend Micro | Scanmail | 2.51 | All | domino | All |
| Application | Trend Micro | Scanmail | 2.6 | All | domino | All |
| Application | Trend Micro | Scanmail | 3.8 | All | microsoft_exchange | All |
| Application | Trend Micro | Scanmail | 3.81 | All | microsoft_exchange | All |
| Application | Trend Micro | Scanmail | 6.1 | All | microsoft_exchange | All |
| Application | Trend Micro | Scanmail | gold | All | lotus_domino_on_aix | All |
| Application | Trend Micro | Scanmail | gold | All | lotus_domino_on_as_400 | All |
| Application | Trend Micro | Scanmail | gold | All | lotus_domino_on_solaris | All |
| Application | Trend Micro | Scanmail | gold | All | lotus_domino_on_s_390 | All |
| Application | Trend Micro | Scanmail | gold | All | lotus_domino_on_windows | All |
| Application | Trend Micro | Scanmail | 1.0.0 | All | All | All |
| Application | Trend Micro | Scanmail | 2.51 | All | domino | All |
| Application | Trend Micro | Scanmail | 2.6 | All | domino | All |
| Application | Trend Micro | Scanmail | 3.8 | All | microsoft_exchange | All |
| Application | Trend Micro | Scanmail | 3.81 | All | microsoft_exchange | All |
| Application | Trend Micro | Scanmail | 6.1 | All | microsoft_exchange | All |
| Application | Trend Micro | Scanmail | gold | All | lotus_domino_on_aix | All |
| Application | Trend Micro | Scanmail | gold | All | lotus_domino_on_as_400 | All |
| Application | Trend Micro | Scanmail | gold | All | lotus_domino_on_solaris | All |
| Application | Trend Micro | Scanmail | gold | All | lotus_domino_on_s_390 | All |
| Application | Trend Micro | Scanmail | gold | All | lotus_domino_on_windows | All |
| Application | Trend Micro | Scanmail Emanager | All | All | All | All |
| Application | Trend Micro | Scanmail Emanager | All | All | All | All |
| Application | Trend Micro | Scanning Engine | 7.1.0 | All | All | All |
| Application | Trend Micro | Scanning Engine | 7.1.0 | All | All | All |
| Application | Trend Micro | Serverprotect | 5.3.1 | All | All | All |
| Application | Trend Micro | Serverprotect | 5.5.8 | All | All | All |
| Application | Trend Micro | Serverprotect | 5.58 | All | All | All |
| Application | Trend Micro | Serverprotect | 5.58 | All | windows | All |
| Application | Trend Micro | Serverprotect | linux | All | All | All |
| Application | Trend Micro | Serverprotect | linux_1.2.0 | All | All | All |
| Application | Trend Micro | Serverprotect | novell_netware | All | All | All |
| Application | Trend Micro | Serverprotect | windows | All | All | All |
| Application | Trend Micro | Serverprotect | 5.3.1 | All | All | All |
| Application | Trend Micro | Serverprotect | 5.5.8 | All | All | All |
| Application | Trend Micro | Serverprotect | 5.58 | All | All | All |
| Application | Trend Micro | Serverprotect | 5.58 | All | windows | All |
| Application | Trend Micro | Serverprotect | linux | All | All | All |
| Application | Trend Micro | Serverprotect | linux_1.2.0 | All | All | All |
| Application | Trend Micro | Serverprotect | novell_netware | All | All | All |
| Application | Trend Micro | Serverprotect | windows | All | All | All |
| Application | Trend Micro | Viruswall | 3.0.1 | All | All | All |
| Application | Trend Micro | Viruswall | 3.0.1 | All | All | All |
| Application | Trend Micro | Webprotect | 3.1.0 | All | All | All |
| Application | Trend Micro | Webprotect | 3.1.0 | All | All | All |
| Application | Trend Micro | Web Security Suite | 1.2.0 | All | All | All |
| Application | Trend Micro | Web Security Suite | 1.2.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 20070208 Trend Micro AntiVirus UPX Parsing Kernel Buffer Overflow Vulnerability | IDEFENSE | labs.idefense.com | Patch, Vendor Advisory |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| Trend Micro Antivirus UPX Compressed PE File Buffer Overflow Vulnerability | BID | www.securityfocus.com | Patch, Vendor Advisory |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| Trend Micro OfficeScan UPX File Buffer Overflow Lets Remote Users Execute Arbitrary Code - SecurityTracker | SECTRACK | securitytracker.com | |
| Trend Micro Interscan VirusWall UPX File Buffer Overflow Lets Remote Users Execute Arbitrary Code - SecurityTracker | SECTRACK | securitytracker.com | Patch, Vendor Advisory |
| [Vulnerability Awareness] UPX Parsing Kernel Buffer Overflow Vulnerability in VSAPI [EN-1034289] | CONFIRM | esupport.trendmicro.com | Patch, Vendor Advisory |
| CCC Cleaner UPX Processing Buffer Overflow Vulnerability - Advisories - Secunia | SECUNIA | secunia.com | |
| US-CERT Vulnerability Notes | CERT-VN | www.kb.cert.org | US Government Resource |
| Trend Micro PC-cillin UPX File Buffer Overflow Lets Remote Users Execute Arbitrary Code - SecurityTracker | SECTRACK | securitytracker.com | |
| Trend Micro Products UPX Processing Buffer Overflow Vulnerability - Advisories - Secunia | SECUNIA | secunia.com | Patch, Vendor Advisory |
| JVN#77366274: CCCクリーナーにおけるバッファオーバーフローの脆弱性 | JVN | jvn.jp | |
| 33038 | OSVDB | osvdb.org | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| www.jpcert.or.jp/at/2007/at070004.txt | MISC | www.jpcert.or.jp | |
| JVN:JVN#77366274 | MITRE | jvn.jp | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.