Trend Micro Security

IBM Access Support ActiveX GetXMLValue Method Buffer Overflow

  危険度: : 緊急
  CVE識別番号: CVE-2009-0215

  概要

Stack-based buffer overflow in the GetXMLValue method in the IBM Access Support ActiveX control in IbmEgath.dll, as distributed on IBM and Lenovo computers, allows remote attackers to execute arbitrary code via unspecified vectors.

  トレンドマイクロの対策

Apply associated Trend Micro DPI Rules.

  対応方法

  Trend Micro Deep Security DPI Rule Number: 1003408
  Trend Micro Deep Security DPI Rule Name: 1003408 - IBM Access Support ActiveX GetXMLValue Method Buffer Overflow

  影響を受けるソフトウェア

  • ibm access_support_activex_control 3.20.284.0