Heap-based buffer overflow in Trend Micro AntiVirus Library VSAPI before 7.510, as used in multiple Trend Micro products, allows remote attackers to execute arbitrary code via a crafted ARJ file with long header file names that modify pointers within a structure.
Link | Tags |
---|---|
http://www.trendmicro.com/vinfo/secadvisories/default6.asp?VName=Vulnerability+in+VSAPI+ARJ+parsing+could+allow+Remote+Code+execution | patch |
http://securitytracker.com/id?1013290 | vdb entry patch vendor advisory |
http://securitytracker.com/id?1013289 | vdb entry patch vendor advisory |
http://xforce.iss.net/xforce/alerts/id/189 | third party advisory vendor advisory |
http://secunia.com/advisories/14396 | third party advisory patch vendor advisory |
http://www.securityfocus.com/bid/12643 | vdb entry patch |