First published: Mon Nov 21 2022(Updated: )
Affected builds of Trend Micro Apex One and Apex One as a Service contain a monitor engine component that is complied without the /SAFESEH memory protection mechanism which helps to monitor for malicious payloads. The affected component's memory protection mechanism has been updated to enhance product security.
Credit: security@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trendmicro Apex One | <14.0.11789 | |
Trendmicro Apex One | =2019 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-44654.
CVE-2022-44654 has a severity rating of 7.5 (high).
Affected software versions include Trend Micro Apex One and Apex One as a Service up to version 14.0.11789 and Trend Micro Apex One and Worry-Free Business Security 2019.
CVE-2022-44654 affects the monitor engine component of Trend Micro Apex One and Apex One as a Service, which is compiled without the /SAFESEH memory protection mechanism.
Yes, Trend Micro has released an updated version of the affected component to enhance the memory protection mechanism and mitigate the vulnerability. Please refer to the provided reference link for more information.