Description
Stack-based buffer overflow in the CGenericScheduler::AddTask function in cmdHandlerRedAlertController.dll in CmdProcessor.exe in Trend Micro Control Manager 5.5 before Build 1613 allows remote attackers to execute arbitrary code via a crafted IPC packet to TCP port 20101.
Affected products
References
- MISChttp://www.securityfocus.com/archive/1/520780/100/0/threaded
- MISChttp://www.securitytracker.com/id?1026390
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/71681
- VENDOR_ADVISORYhttp://secunia.com/advisories/47114
- MISChttp://www.trendmicro.com/ftp/documentation/readme/readme_critical_patch_TMCM55_1613.txt
- VENDOR_ADVISORYhttp://www.zerodayinitiative.com/advisories/ZDI-11-345/