Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2007-4277
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-4277

Description:
The Trend Micro AntiVirus scan engine before 8.550-1001, as used in Trend Micro PC-Cillin Internet Security 2007, and Tmxpflt.sys 8.320.1004 and 8.500.0.1002, has weak permissions (Everyone:Write) for the \\.\Tmfilter device, which allows local users to send arbitrary content to the device via the IOCTL functionality. NOTE: this can be leveraged for privilege escalation by exploiting a buffer overflow in the handler for IOCTL 0xa0284403.

CVE Status:
Candidate

References:

ST
  1018863

SAID
  Secunia Advisory: SA27378

IDEFENSE
  http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=609

CONFIRM
  http://esupport.trendmicro.com/support/viewxml.do?ContentID=1035793
  http://esupport.trendmicro.com/support/viewxml.do?ContentID=1036190

BID
  26209


Return to the previous page.