|
|
|
![]() |
Vulnerability Note VU#959400Trend Micro ServerProtect Integer Overflow VulnerabilityOverviewTrend Micro ServerProtect contains an integer overflow vulnerability that may allow a remote attacker to execute arbitrary code.I. DescriptionTrend Micro ServerProtect is an anti-virus application designed to run on Microsoft Windows servers. The application provides administrators with centralized management of multiple servers. The ServerProtect architecture includes a management console, information server, and the server which has ServerProtect installed.The ServerProtect executable that runs on the server being protected by the anti-virus engine is called SpntSvc.exe. This executable uses the StRpcSrv.dll library to handle RPC requests on 5168/tcp. Trend Micro has addressed this vulnerability in Security Patch 4 - Build 1185.
References
This vulnerability was discovered by Jun Mao (iDefense Labs). This document was written by Joseph Pruszynski.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||