PT-2005-1586 · Trend Micro · Trend Micro Antivirus Library Vsapi

Published

2005-02-24

·

Updated

2008-09-05

·

CVE-2005-0533

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Trend Micro AntiVirus Library VSAPI versions prior to 7.510
Description The issue is related to a heap-based buffer overflow that can be triggered by remote attackers. This is achieved by sending a crafted ARJ file that contains long header file names, which in turn modify pointers within a structure, allowing the execution of arbitrary code.
Recommendations For versions prior to 7.510, update to version 7.510 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-0533

Affected Products

Trend Micro Antivirus Library Vsapi