Multiple heap-based buffer overflows in the ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as used in Trend Micro OfficeScan 8.0 SP1 Patch 1 and Internet Security 2007 and 2008 17.0.1224, allow remote attackers to execute arbitrary code via a packet with a small value in an unspecified size field.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2009-01-21 12:30
Updated : 2018-10-11 13:50
NVD link : CVE-2008-3865
Mitre link : CVE-2008-3865
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
trend_micro
- officescan
- internet_security_2007
- internet_security_2008