HIGH · 7.5

CVE-2005-0533

Heap-based buffer overflow in Trend Micro AntiVirus Library VSAPI before 7.510, as used in multiple Trend Micro products, allows remote attackers to execute arbitrary code via a crafted ARJ file with ...

Vulnerability Description

Heap-based buffer overflow in Trend Micro AntiVirus Library VSAPI before 7.510, as used in multiple Trend Micro products, allows remote attackers to execute arbitrary code via a crafted ARJ file with long header file names that modify pointers within a structure.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
Trend MicroClient-Server-Messaging Suite Smbgold
Trend MicroClient-Server Suite Smbgold
Trend MicroControl Managergold
Trend MicroInterscan Emanager3.5
Trend MicroInterscan Messaging Security Suite3.81
Trend MicroInterscan Viruswall3.0.1
Trend MicroInterscan Web Security Suitegold
Trend MicroInterscan Webmanager1.2
Trend MicroInterscan Webprotectgold
Trend MicroOfficescan3.0
Trend MicroPc-Cillin6.0
Trend MicroPortalprotect1.0
Trend MicroScanmail2.6
Trend MicroScanmail EmanagerAll versions
Trend MicroServerprotect1.3

References

FAQ

What is CVE-2005-0533?

CVE-2005-0533 is a vulnerability with a CVSS score of 7.5 (HIGH). Heap-based buffer overflow in Trend Micro AntiVirus Library VSAPI before 7.510, as used in multiple Trend Micro products, allows remote attackers to execute arbitrary code via a crafted ARJ file with ...

How severe is CVE-2005-0533?

CVE-2005-0533 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-0533?

Check the references section above for vendor advisories and patch information. Affected products include: Trend Micro Client-Server-Messaging Suite Smb, Trend Micro Client-Server Suite Smb, Trend Micro Control Manager, Trend Micro Interscan Emanager, Trend Micro Interscan Messaging Security Suite.