Trend Micro Control Manager "mrf.exe" Remote Buffer Overflow Vulnerability
RISK: Medium Risk
TYPE: Security software and application - Security Software & Appliance
A vulnerability has been identified in Trend Micro Control Manager, which could be exploited by remote attackers to take complete control of a vulnerable system. This issue is caused by a buffer overflow error in the "mrf.exe" TMI service module when displaying an error message via a "sprintf()" call, which could be exploited by remote unauthenticated attackers to crash an affected application or execute arbitrary code.
Impact
- Remote Code Execution
System / Technologies affected
- Trend Micro Control Manager versions prior to 5.5 Critical Patch Build 1318
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Apply Critical Patch Build 1318 :
http://downloadcenter.trendmicro.com/index.php?prodid=7
Vulnerability Identifier
- No CVE information is available
Source
Related Link
Share with