Trend Micro OfficeScan CGI Parsing Buffer Overflow Vulnerability
BID:31859
Info
Trend Micro OfficeScan CGI Parsing Buffer Overflow Vulnerability
| Bugtraq ID: | 31859 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-3862 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 22 2008 12:00AM |
| Updated: | Oct 22 2008 04:46PM |
| Credit: | Dyon Balding, Secunia Research |
| Vulnerable: |
Trend Micro OfficeScan 8.0 SP 1 Patch 1 Trend Micro OfficeScan 8.0 Trend Micro OfficeScan 7.3 |
| Not Vulnerable: | |
Discussion
Trend Micro OfficeScan CGI Parsing Buffer Overflow Vulnerability
Trend Micro OfficeScan is prone to a buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
Successful exploits may allow an attacker to execute arbitrary code within the context of the affected application. This may facilitate a complete compromise of vulnerable computers. Failed exploit attempts will likely result in denial-of-service conditions.
This issue affects OfficeScan 7.3 with Patch 4 build 1362 and OfficeScan 8.0 SP1 Patch 1; other versions may also be affected.
Trend Micro OfficeScan is prone to a buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
Successful exploits may allow an attacker to execute arbitrary code within the context of the affected application. This may facilitate a complete compromise of vulnerable computers. Failed exploit attempts will likely result in denial-of-service conditions.
This issue affects OfficeScan 7.3 with Patch 4 build 1362 and OfficeScan 8.0 SP1 Patch 1; other versions may also be affected.
Exploit / POC
Trend Micro OfficeScan CGI Parsing Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Trend Micro OfficeScan CGI Parsing Buffer Overflow Vulnerability
Solution:
The vendor released fixes to address this issue. Please see the references for more information.
Trend Micro OfficeScan 8.0 SP 1 Patch 1
Trend Micro OfficeScan 7.3
Solution:
The vendor released fixes to address this issue. Please see the references for more information.
Trend Micro OfficeScan 8.0 SP 1 Patch 1
-
Trend Micro OSCE_8.0_SP1_Patch1_Win_EN_CriticalPatch_B3110.exe
http://www.trendmicro.com/ftp/products/patches/OSCE_8.0_SP1_Patch1_Win _EN_CriticalPatch_B3110.exe
Trend Micro OfficeScan 7.3
-
Trend Micro OSCE_7.3_Win_EN_CriticalPatch_B1374.exe
http://www.trendmicro.com/ftp/products/patches/OSCE_7.3_Win_EN_Critica lPatch_B1374.exe
References
Trend Micro OfficeScan CGI Parsing Buffer Overflow Vulnerability
References:
References:
- Trend Micro OfficeScan CGI Parsing Buffer Overflow (Secunia)
- Trend Micro(TM) OfficeScan(TM) 7.3 Critical Patch - Build 1374 CGI modules (Trend Micro)
- Trend Micro(TM) OfficeScan(TM) 8.0 SP1 Patch 1 Critical Patch - Build 3110 CGI (Trend Micro)
- Secunia Research: Trend Micro OfficeScan CGI Parsing Buffer Overflows (Secunia Research
)