Multiple buffer overflows in EarthAgent.exe in Trend Micro ServerProtect 5.58 for Windows before Security Patch 4 allow remote attackers to have an unknown impact via certain RPC function calls to (1) RPCFNEVENTBACKDoHotFix or (2) CMDCHANGEAGENTREGISTERINFO.
Multiple buffer overflows in the ServerProtect service (SpntSvc.exe) in Trend Micro ServerProtect for Windows before 5.58 Security Patch 4 allow remote attackers to execute arbitrary code via certain RPC requests to certain TCP ports that are processed by the (1) RPCFNENGNewManualScan, (2) RPCFNENGTimedNewManualScan, and (3) RPCFNSetComputerName functions in (a) StRpcSrv.dll; the (4) RPCFNCMONSetSvcImpersonateUser and (5) RPCFNOldCMONSetSvcImpersonateUser functions in (b) Stcommon.dll; the (6) RPCFNENGTakeActionOnAFile and (7) RPCFNENGAddTaskExportLogItem functions in (c) Eng50.dll; the (8) NTFSetPagerNotifyConfig function in (d) Notification.dll; or the (9) RPCFNCopyAUSrc function in the (e) ServerProtect Agent service.
Integer overflow in the RPCFNSYNCTASK function in StRpcSrv.dll, as used by the ServerProtect service (SpntSvc.exe), in Trend Micro ServerProtect for Windows before 5.58 Security Patch 4 allows remote attackers to execute arbitrary code via a certain integer field in a request packet to TCP port 5168, which triggers a heap-based buffer overflow.