CVE-2017-9035: High severity trendmicro Serverprotect Linux vulnerability
Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows attackers to eavesdrop and tamper with updates by leveraging unencrypted communications with update servers.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-9035?
CVE-2017-9035 is rated as a medium severity vulnerability due to the potential for eavesdropping and tampering with update communications.
How does CVE-2017-9035 affect Trend Micro ServerProtect for Linux?
CVE-2017-9035 allows attackers to exploit unencrypted communications, compromising the integrity and confidentiality of updates.
How do I fix CVE-2017-9035?
To fix CVE-2017-9035, it is recommended to apply the latest patches from Trend Micro that address the unencrypted communication issue.
What versions of Trend Micro ServerProtect are affected by CVE-2017-9035?
CVE-2017-9035 affects Trend Micro ServerProtect for Linux version 3.0 prior to CP 1531.
What should I do if I am using an affected version of Trend Micro ServerProtect due to CVE-2017-9035?
Users of affected versions should immediately upgrade to the patched version provided by Trend Micro to mitigate risks associated with CVE-2017-9035.