|
Full Disclosure
mailing list archives
Re: iDefense Security Advisory 12.14.05: Trend Micro ServerProtect relay.dll Chunked Overflow Vulnerability
From: "labs-no-reply () idefense com" <labs-no-reply () idefense com>
Date: Wed, 14 Dec 2005 17:58:09 -0500
Matt,
We don't disagree with you. The vulnerability lies in the Microsoft
Foundation Classes (MFC) static libraries. Trend Micro also acknowledges
this in their response. Unfortunately, Trend Micro's product
distributions are vulnerable since they ship with the old static libraries.
Michael Sutton
Director, iDefense Labs
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
By Date
By Thread
Current thread:
- Re: iDefense Security Advisory 12.14.05: Trend Micro ServerProtect relay.dll Chunked Overflow Vulnerability labs-no-reply () idefense com (Dec 14)
|