Vulnerabilities > CVE-2006-6458 - Unspecified vulnerability in Trend Micro products
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
The Trend Micro scan engine before 8.320 for Windows and before 8.150 on HP-UX and AIX, as used in Trend Micro PC Cillin - Internet Security 2006, Office Scan 7.3, and Server Protect 5.58, allows remote attackers to cause a denial of service (CPU consumption and system hang) via a malformed RAR archive with an Archive Header section with the head_size and pack_size fields set to zero, which triggers an infinite loop.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
References
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=439
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=439
- http://secunia.com/advisories/23321
- http://secunia.com/advisories/23321
- http://www.securityfocus.com/bid/21509
- http://www.securityfocus.com/bid/21509
- http://www.vupen.com/english/advisories/2006/4918
- http://www.vupen.com/english/advisories/2006/4918