Trend Micro ServerProtect EarthAgent.EXE Remote Stack Based Buffer Overflow Vulnerability

Trend Micro ServerProtect is prone to a stack-based buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.

Exploiting this issue allows attackers to execute arbitrary machine code with SYSTEM-level privileges and to completely compromise affected computers. Failed exploit attempts will result in a denial of service.


 

Privacy Statement
Copyright 2010, SecurityFocus