PT-2007-5412 · Trend Micro · Trend Micro Serverprotect
Published
2007-08-22
·
Updated
2017-07-29
·
CVE-2007-4219
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Trend Micro ServerProtect for Windows versions prior to 5.58 Security Patch 4
Description
The issue is related to an integer overflow in the RPCFN SYNC TASK function in StRpcSrv.dll, used by the ServerProtect service (SpntSvc.exe). This allows remote attackers to execute arbitrary code via a certain integer field in a request packet to TCP port 5168, triggering a heap-based buffer overflow.
Recommendations
For versions prior to 5.58 Security Patch 4, apply Security Patch 4 to resolve the issue. As a temporary workaround, consider restricting access to TCP port 5168 to minimize the risk of exploitation.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Trend Micro Serverprotect