CVE-2005-0533: Buffer Overflow

Published Feb 24, 2005
·
Updated

Heap-based buffer overflow in Trend Micro AntiVirus Library VSAPI before 7.510, as used in multiple Trend Micro products, allows remote attackers to execute arbitrary code via a crafted ARJ file with long header file names that modify pointers within a structure.

Affected Software

78 affected components
Trend Micro Client-server-messaging Suite Smb=gold
Trend Micro Client-server Suite Smb=gold
Trend Micro Control Manager=gold
Trend Micro Control Manager=gold
Trend Micro Control Manager=gold
Trend Micro Control Manager=gold
Trend Micro Control Manager=gold
Trend Micro Control Manager=netware
Trend Micro Interscan Emanager=3.5
Trend Micro Interscan Emanager=3.5.2
Trend Micro Interscan Emanager=3.6
Trend Micro Interscan Emanager=3.6
Trend Micro Interscan Emanager=3.51
Trend Micro Interscan Emanager=3.51_j
Trend Micro InterScan Messaging Security Suite=3.81
Trend Micro InterScan Messaging Security Suite=5.5
Trend Micro InterScan Messaging Security Suite=gold
Trend Micro InterScan Messaging Security Suite=gold
Trend Micro InterScan Messaging Security Suite=gold
Trend Micro InterScan VirusWall=3.0.1
Trend Micro InterScan VirusWall=3.0.1
Trend Micro InterScan VirusWall=3.4
Trend Micro InterScan VirusWall=3.5
Trend Micro InterScan VirusWall=3.6
Trend Micro InterScan VirusWall=3.6
Trend Micro InterScan VirusWall=3.6
Trend Micro InterScan VirusWall=3.6
Trend Micro InterScan VirusWall=3.6.5
Trend Micro InterScan VirusWall=3.51
Trend Micro InterScan VirusWall=3.52
Trend Micro InterScan VirusWall=3.52_build1466
Trend Micro InterScan VirusWall=5.1
Trend Micro InterScan VirusWall=gold
Trend Micro InterScan VirusWall=gold
Trend Micro InterScan VirusWall=gold
Trend Micro InterScan VirusWall=gold
Trend Micro InterScan VirusWall=gold
Trend Micro InterScan Web Security Suite=gold
Trend Micro InterScan Web Security Suite=gold
Trend Micro InterScan Web Security Suite=gold
Trend Micro InterScan WebManager=1.2
Trend Micro InterScan WebManager=2.0
Trend Micro InterScan WebManager=2.1
Trend Micro Interscan Webprotect=gold
Trend Micro OfficeScan=3.0
Trend Micro OfficeScan=corporate_3.0
Trend Micro OfficeScan=corporate_3.1.1
Trend Micro OfficeScan=corporate_3.5
Trend Micro OfficeScan=corporate_3.5
Trend Micro OfficeScan=corporate_3.11
Trend Micro OfficeScan=corporate_3.11
Trend Micro OfficeScan=corporate_3.13
Trend Micro OfficeScan=corporate_3.13
Trend Micro OfficeScan=corporate_3.54
Trend Micro OfficeScan=corporate_5.02
Trend Micro OfficeScan=corporate_5.5
Trend Micro OfficeScan=corporate_5.58
Trend Micro OfficeScan=corporate_6.5
Trend Micro PC-Cillin=6.0
Trend Micro PC-Cillin=2000
Trend Micro PC-Cillin=2002
Trend Micro PC-Cillin=2003
Trend Micro Portalprotect=1.0
Trend Micro ScanMail=2.6
Trend Micro ScanMail=2.51
Trend Micro ScanMail=3.8
Trend Micro ScanMail=3.81
Trend Micro ScanMail=6.1
Trend Micro ScanMail=gold
Trend Micro ScanMail=gold
Trend Micro ScanMail=gold
Trend Micro ScanMail=gold
Trend Micro ScanMail=gold
Trend Micro Scanmail Emanager
Trend Micro ServerProtect=1.3
Trend Micro ServerProtect=1.25_2007-02-16
Trend Micro ServerProtect=2.5
Trend Micro ServerProtect=5.3.1

Event History

Feb 24, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2005-0533?

The severity of CVE-2005-0533 is high due to its potential for remote code execution.

2

How do I fix CVE-2005-0533?

To mitigate CVE-2005-0533, upgrade to a version of the Trend Micro products that is using the VSAPI library version 7.510 or later.

3

Which Trend Micro products are affected by CVE-2005-0533?

Affected Trend Micro products include Client-Server Messaging Suite SMB, Control Manager, InterScan eManager, and several others listed in the CVE details.

4

What type of attack is associated with CVE-2005-0533?

CVE-2005-0533 is associated with a heap-based buffer overflow attack that can occur via specially crafted ARJ files.

5

Can CVE-2005-0533 lead to data breaches?

Yes, CVE-2005-0533 could potentially lead to data breaches as it allows remote attackers to execute arbitrary code.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203