TUCoPS :: HP Unsorted C :: va3422.htm

Changes : Trendmicro multiple bypass/evasions
Changes : Trendmicro multiple bypass/evasions
Changes : Trendmicro multiple bypass/evasions



______________________________________________________________________

           UPDATE : Trendmicro RAR / CAB bypass evasion
______________________________________________________________________


CHANGES to original advisory [TZO-172009] Trendmicro : 
------------------------------------------------------

Status     : RAR / CAB  issue WILL be patched on June 17

Quoting vendor : 
"This vulnerability is capable of allowing attackers to send RAR files 
with corrupted RAR headers through our gateway products, which bypass 
the compressed files without scanning them."


Comment:
This   just  goes  to  proove  that  publishing changes perception, as
customers   read,   react   and  complain.  (Trend  previously  denied
patching). In other words, always publish even if the vendor denies
patching.

In  the  name  of all TrendMicro customers I would like to thank those
customers that reacted and complained. Wihtout publication there is no
change, without those reacting to advisories there is neither.

Prooves #2 and #5 at http://blog.zoller.lu/2009/04/dear-thierry-why-are-you-such-arrogant.html 
to be valid.

Regards,
Thierry Zoller





TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH