Multiple vulnerabilities have been identified in various Trend Micro products, which could be exploited by local attackers to bypass security restrictions, cause a denial of service or gain elevated privileges.
The first issue is caused by buffer overflow errors in the Firewall service (TmPfw.exe) within the "ApiThread()" function when processing specially crafted packets containing a small value in a size field sent to port 40000/TCP, which could be exploited by malicious users to potentially execute arbitrary code with SYSTEM privileges.
The second vulnerability is caused by input validation errors in the Firewall service (TmPfw.exe) within the "ApiThread()" function when processing specially crafted packets containing an overly large value in a size field sent to port 40000/TCP, which could be exploited by malicious users to crash an affected service.
The third issue is caused due to missing authentication within the Firewall service (TmPfw.exe) listening on port 40000/TCP, which can be exploited by local users to manipulate the firewall configuration via specially crafted packets regardless of whether password restriction has been enabled for the configuration interface.
Subscribe to VUPEN VNS and receive real-time alerts with CVE, CWE, and CVSS when new advisories or patches relevant to your systems and network configurations are available.
Feedback If you have additional information or corrections for this security advisory please submit them via our contact form.