Trend Micro Security

Multiple Vendors AgentX Receive Agentx Stack Buffer Overflow

  危険度: : 緊急
  CVE識別番号: CVE-2010-1318

  概要

Stack-based buffer overflow in the AgentX::receive agentx function in AgentX 1.4.16, as used in RealNetworks Helix Server and Helix Mobile Server 11.x through 13.x and other products, allows remote attackers to execute arbitrary code via unspecified vectors.

  トレンドマイクロの対策

Trend Micro Deep Security shields networks through Deep Packet Inspection (DPI) rules. Trend Micro customers using OfficeScan with Intrusion Defense Firewall (IDF) plugin are also protected from attacks using these vulnerabilities. Please refer to the filter number and filter name when applying appropriate DPI and/or IDF rules.

  影響を受けるソフトウェア

  • Realnetworks Helix Mobile Server 13.1.1
  • Realnetworks Helix Server 11.0
  • Realnetworks Helix Server 11.1
  • Realnetworks Helix Server 12.0.0
  • Realnetworks Helix Server 12.0.1
  • Realnetworks Helix Server 13.1.1
  • Realnetworks Helix Server Mobile 11.0
  • Realnetworks Helix Server Mobile 12.0.0
  • Realnetworks Helix Server Mobile 13.0.0