CVE-2007-4219: Buffer Overflow
Integer overflow in the RPCFNSYNCTASK function in StRpcSrv.dll, as used by the ServerProtect service (SpntSvc.exe), in Trend Micro ServerProtect for Windows before 5.58 Security Patch 4 allows remote attackers to execute arbitrary code via a certain integer field in a request packet to TCP port 5168, which triggers a heap-based buffer overflow.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-4219?
CVE-2007-4219 has a high severity rating due to its potential for remote code execution.
How do I fix CVE-2007-4219?
To fix CVE-2007-4219, you should upgrade to Trend Micro ServerProtect version 5.58 Security Patch 4 or later.
What are the risks associated with CVE-2007-4219?
The risks associated with CVE-2007-4219 include unauthorized remote code execution on affected systems.
Which software versions are affected by CVE-2007-4219?
CVE-2007-4219 affects Trend Micro ServerProtect for Windows versions prior to 5.58 Security Patch 4.
What type of attack can exploit CVE-2007-4219?
CVE-2007-4219 can be exploited by attackers sending crafted requests to the vulnerable TCP port.