FEATURED VIDEO
Sponsored By:
SLIDE SHOWS
As if they needed more stress, organizations are facing evolving and increasingly stringent compliance regulations from the Payment Card Industry, as well as Sarbanes-Oxley, HIPAA and others. Here are a few security compliance products that can make the audit process less excruciating.
Here are 10 of the distributor's hottest new offerings winning over solution providers.
New smartphones from Sony, Motorola and the first-ever Twitter-only mobile device -- the TwitterPeek -- headline a busy week for handset makers as the holiday shopping season heats up.
INSIDE CHANNELWEB

Trend Micro Patches Serious Server AV Bug


CRN logo By Kevin McLaughlin, ChannelWeb

6:12 PM EST Wed. Feb. 21, 2007
Trend Micro has patched several vulnerabilities in its ServerProtect server antivirus application that could enable hackers to execute malicious code and commandeer affected machines.

The four remote stack based overflow flaws affect ServerProtect for Windows 5.58, ServerProtect for EMC 5.58, ServerProtect for Network Appliance Filer 5.61, and ServerProtect for Network Appliance Filer 5.62, according to a Trend Micro advisory issued Wednesday.

Pedram Amini, manager of TippingPoint's Security Research Team, discovered the vulnerabilities and says a successful exploit would result in the complete compromise of a system.

"Since this runs as a privileged user, an attacker would have full control over the system," Amini said.

Hackers could trigger the flaws by sending a specially rigged remote procedure call (RPC) to the affected application, but the potential impact is limited somewhat by the fact that this is not a service that is typically exposed outside the network, according to Amini.

Secunia said the flaw was 'moderately critical', or three on a five-point scale, while Symantec gave the bug its highest rating of 10.

For Trend Micro, this is the third serious vulnerability to be patched in the past three weeks. Last week, Trend patched a critical stack based buffer overflow vulnerability in its OfficeScan security software, and a week earlier, the Tokyo-based vendor fixed a denial-of-service flaw in the ScanEngine component that's included in nearly all of its products.

 
Channelweb : Promofinder
FEATURED PROMOTIONS
HES/HWS 30% End User Discount
HES/HWS 30% End User Discount
DLP Monitor 20% End User Discount
DLP Monitor 20% End User Discount
RELATED BLOG >>
Photo
SpamTitan offers comprehensive e-mail security, protecting against phishing attacks, viruses, malware and, yes, spam too.
ADVERTISEMENT




CHANNEL SERVICES >>

techcareers logo Search Jobs:


  

Post Resume|Employers

Recent Post:


Network Engineer
Lawrence Berkeley National Lab seeking Network Engineer in Berkeley, CA
spacer