ID

VAR-200904-0687


TITLE

Multiple Trend Micro Products RAR/ZIP/CAB Files Scan Evasion Vulnerability

Trust: 0.3

sources: BID: 34763

DESCRIPTION

Multiple Trend Micro products are prone to a vulnerability that may allow certain compressed archives to bypass the scan engine. Successful exploits will allow attackers to distribute files containing malicious code that the antivirus application will fail to detect. ServerProtect for Microsoft Windows/Novell NetWare ServerProtect for EMC Celerra ServerProtect for NetApp ServerProtect for Linux ServerProtect for Network Appliance Filers Internet Security Pro Internet Security OfficeScan Component Worry Free Business Security - Standard Worry Free Business Security - Advanced Worry Free Business Security Hosted Housecall InterScan Web Security Suite InterScan Web Protect for ISA InterScan Messaging Security Appliance Neatsuite Advanced ScanMail for Exchange ScanMail for Domino Suites

Trust: 0.3

sources: BID: 34763

AFFECTED PRODUCTS

vendor:trend micromodel:interscan viruswallscope:eqversion:3.6

Trust: 1.2

vendor:trend micromodel:interscan viruswallscope:eqversion:3.0.1

Trust: 0.6

vendor:trend micromodel:interscan webprotect for isascope: - version: -

Trust: 0.3

vendor:trend micromodel:interscan viruswallscope:eqversion:3.3

Trust: 0.3

vendor:trend micromodel:interscan viruswall for windows ntscope:eqversion:3.51

Trust: 0.3

vendor:trend micromodel:interscan viruswall buildscope:eqversion:3.61182

Trust: 0.3

vendor:trend micromodel:interscan viruswall for windowsscope: - version: -

Trust: 0.3

vendor:trend micromodel:interscan viruswall for smb windows ntscope: - version: -

Trust: 0.3

vendor:trend micromodel:serverprotect for windowsscope:eqversion:5.58

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:7.0

Trust: 0.3

vendor:trend micromodel:scanmail for microsoft exchangescope:eqversion:3.8

Trust: 0.3

vendor:trend micromodel:worry-free business securityscope:eqversion:5.0

Trust: 0.3

vendor:trend micromodel:interscan viruswall for windows ntscope:eqversion:3.6

Trust: 0.3

vendor:trend micromodel:officescan corporate edition for windows nt serverscope:eqversion:3.13

Trust: 0.3

vendor:trend micromodel:serverprotectscope:eqversion:5.5.8

Trust: 0.3

vendor:trend micromodel:serverprotect (security patchscope:eqversion:5.58

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:8.0

Trust: 0.3

vendor:trend micromodel:scanmail for dominoscope:eqversion:2.51

Trust: 0.3

vendor:trend micromodel:internet security proscope:eqversion:2009

Trust: 0.3

vendor:trend micromodel:interscan viruswall for unixscope:eqversion:3.0.1

Trust: 0.3

vendor:trend micromodel:housecallscope:eqversion:5.5

Trust: 0.3

vendor:trend micromodel:server protectscope:eqversion:5.58

Trust: 0.3

vendor:trend micromodel:serverprotect for windowsscope: - version: -

Trust: 0.3

vendor:trend micromodel:officescan corporate edition 8.0.patch buildscope:eqversion:1042

Trust: 0.3

vendor:trend micromodel:interscan viruswall buildscope:eqversion:3.71190

Trust: 0.3

vendor:trend micromodel:interscan viruswall for smbscope: - version: -

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:6.5

Trust: 0.3

vendor:trend micromodel:serverprotectscope:eqversion:5.3.1

Trust: 0.3

vendor:trend micromodel:interscan messaging security suite for linuxscope: - version: -

Trust: 0.3

vendor:trend micromodel:interscan viruswallscope:eqversion:3.1

Trust: 0.3

vendor:trend micromodel:interscan webmanagerscope:eqversion:1.2

Trust: 0.3

vendor:trend micromodel:serverprotect for linuxscope: - version: -

Trust: 0.3

vendor:trend micromodel:officescan corporate edition sp1 patchscope:eqversion:8.01

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:3.13

Trust: 0.3

vendor:trend micromodel:housecallscope:eqversion:6.61285

Trust: 0.3

vendor:trend micromodel:housecallscope:eqversion:6.51.0.1028

Trust: 0.3

vendor:trend micromodel:officescan corporate edition for windows nt serverscope:eqversion:3.0

Trust: 0.3

vendor:trend micromodel:interscan web security suite for windowsscope:eqversion:3.1

Trust: 0.3

vendor:trend micromodel:interscan viruswall for windows nt buildscope:eqversion:3.521466

Trust: 0.3

vendor:trend micromodel:interscan websecuritysuite for linuxscope: - version: -

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:5.58

Trust: 0.3

vendor:trend micromodel:interscan messaging security suitescope:eqversion:5.5.1183

Trust: 0.3

vendor:trend micromodel:officescan corporate edition for windows nt serverscope:eqversion:3.1.1

Trust: 0.3

vendor:trend micromodel:internet security proscope:eqversion:2008

Trust: 0.3

vendor:trend micromodel:serverprotect for network appliance filerscope:eqversion:5.62

Trust: 0.3

vendor:trend micromodel:interscan viruswallscope:eqversion:3.81

Trust: 0.3

vendor:trend micromodel:internet securityscope:eqversion:2009

Trust: 0.3

vendor:trend micromodel:officescan corporate edition patch buildscope:eqversion:8.0211

Trust: 0.3

vendor:trend micromodel:interscan emanager for windowsscope:eqversion:3.5.2

Trust: 0.3

vendor:trend micromodel:officescanscope:eqversion:7.3

Trust: 0.3

vendor:trend micromodel:interscan web security suite for solarisscope: - version: -

Trust: 0.3

vendor:trend micromodel:interscan viruswall for smb linuxscope: - version: -

Trust: 0.3

vendor:trend micromodel:interscan emanager jscope:eqversion:3.51

Trust: 0.3

vendor:trend micromodel:serverprotect for linuxscope:eqversion:1.2

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:3.0

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:3.54

Trust: 0.3

vendor:trend micromodel:office scanscope:eqversion:7.3

Trust: 0.3

vendor:trend micromodel:interscan viruswallscope:eqversion:3.32

Trust: 0.3

vendor:trend micromodel:interscan viruswall for aixscope: - version: -

Trust: 0.3

vendor:trend micromodel:interscan websecuritysuite for linux jascope:eqversion:1.0

Trust: 0.3

vendor:trend micromodel:interscan webmanagerscope:eqversion:2.1

Trust: 0.3

vendor:trend micromodel:officescan corporate edition buildscope:eqversion:7.31314

Trust: 0.3

vendor:trend micromodel:officescanscope:eqversion:7.0

Trust: 0.3

vendor:trend micromodel:scanmail for dominoscope:eqversion:2.6

Trust: 0.3

vendor:trend micromodel:interscan viruswall scan enginescope:eqversion:7.510-1002

Trust: 0.3

vendor:trend micromodel:interscan messaging security suite for linuxscope:eqversion:5.1.1

Trust: 0.3

vendor:trend micromodel:interscan emanagerscope:eqversion:3.51

Trust: 0.3

vendor:trend micromodel:interscan messaging security suitescope:eqversion:5.5

Trust: 0.3

vendor:trend micromodel:interscan messaging security suitescope:eqversion:3.81

Trust: 0.3

vendor:trend micromodel:interscan viruswall for windows ntscope:eqversion:3.4

Trust: 0.3

vendor:trend micromodel:internet securityscope:eqversion:2008

Trust: 0.3

vendor:trend micromodel:interscan messaging security suite for windowsscope: - version: -

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:5.02

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:6.0

Trust: 0.3

vendor:trend micromodel:interscan viruswall for windows ntscope:eqversion:5.1

Trust: 0.3

vendor:trend micromodel:interscan viruswall buildscope:eqversion:3.61166

Trust: 0.3

vendor:trend micromodel:officescan for microsoft sbsscope:eqversion:4.5

Trust: 0.3

vendor:trend micromodel:scanmail for microsoft exchangescope:eqversion:6.2

Trust: 0.3

vendor:trend micromodel:interscan web security suite for linuxscope:eqversion:3.1

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:5.5

Trust: 0.3

vendor:trend micromodel:interscan viruswallscope:eqversion:3.52

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:7.3

Trust: 0.3

vendor:trend micromodel:interscan web security suite for windowsscope: - version: -

Trust: 0.3

vendor:trend micromodel:scanmail for microsoft exchangescope:eqversion:3.81

Trust: 0.3

vendor:trend micromodel:officescan sp patchscope:eqversion:8.011

Trust: 0.3

vendor:trend micromodel:officescan corporate edition for windows nt serverscope:eqversion:3.5

Trust: 0.3

vendor:trend micromodel:interscan webmanagerscope:eqversion:2.0

Trust: 0.3

vendor:trend micromodel:internet security suitescope:eqversion:20070

Trust: 0.3

vendor:trend micromodel:interscan viruswall for windows ntscope:eqversion:3.5

Trust: 0.3

vendor:trend micromodel:serverprotectscope:eqversion:5.58

Trust: 0.3

vendor:trend micromodel:officescan service packscope:eqversion:8.01

Trust: 0.3

vendor:trend micromodel:scanmail for microsoft exchangescope:eqversion:6.1

Trust: 0.3

vendor:trend micromodel:interscan viruswall buildscope:eqversion:3.81130

Trust: 0.3

vendor:trend micromodel:officescan corporate edition for windows nt serverscope:eqversion:3.11

Trust: 0.3

vendor:trend micromodel:interscan web security suite for linuxscope: - version: -

Trust: 0.3

vendor:trend micromodel:officescanscope:eqversion:8.0

Trust: 0.3

vendor:trend micromodel:interscan emanager for hpscope:eqversion:3.5

Trust: 0.3

vendor:trend micromodel:interscan emanager for linuxscope:eqversion:3.6

Trust: 0.3

vendor:trend micromodel:housecallscope:eqversion:6.6.0.1278

Trust: 0.3

vendor:trend micromodel:serverprotect for novell netwarescope: - version: -

Trust: 0.3

vendor:trend micromodel:interscan viruswallscope:eqversion:3.7

Trust: 0.3

vendor:trend micromodel:interscan emanager for sunscope:eqversion:3.6

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:3.5

Trust: 0.3

vendor:trend micromodel:serverprotect for emcscope:eqversion:5.58

Trust: 0.3

vendor:trend micromodel:serverprotectscope:eqversion:5.7

Trust: 0.3

vendor:trend micromodel:serverprotect for network appliance filerscope:eqversion:5.61

Trust: 0.3

vendor:trend micromodel:housecallscope:eqversion:5.7

Trust: 0.3

vendor:trend micromodel:interscan web security virtual appliancescope:eqversion:3.1

Trust: 0.3

vendor:trend micromodel:officescan corporate editionscope:eqversion:3.11

Trust: 0.3

vendor:trend micromodel:officescan corporate edition for smb2.0scope:eqversion:6.0

Trust: 0.3

vendor:trend micromodel:interscan web security suitescope:eqversion:2.5

Trust: 0.3

vendor:trend micromodel:interscan viruswallscope:eqversion:3.2.3

Trust: 0.3

vendor:trend micromodel:interscan messaging security suite for solarisscope: - version: -

Trust: 0.3

vendor:trend micromodel:interscan viruswall for windows ntscope:eqversion:3.52

Trust: 0.3

vendor:trend micromodel:interscan viruswall for unixscope:eqversion:3.6x

Trust: 0.3

sources: BID: 34763

THREAT TYPE

network

Trust: 0.3

sources: BID: 34763

TYPE

Input Validation Error

Trust: 0.3

sources: BID: 34763

EXTERNAL IDS

db:BIDid:34763

Trust: 0.3

sources: BID: 34763

REFERENCES

url:http://www.trend.com

Trust: 0.3

url:http://blog.zoller.lu/2009/04/trendmicro-multiple-evasion-and-bypass.html

Trust: 0.3

url:/archive/1/503076

Trust: 0.3

url:/archive/1/503078

Trust: 0.3

url:/archive/1/503391

Trust: 0.3

sources: BID: 34763

CREDITS

Thierry Zoller

Trust: 0.3

sources: BID: 34763

SOURCES

db:BIDid:34763

LAST UPDATE DATE

2022-05-17T01:58:09.755000+00:00


SOURCES UPDATE DATE

db:BIDid:34763date:2009-05-11T17:46:00

SOURCES RELEASE DATE

db:BIDid:34763date:2009-04-29T00:00:00