Out-Of-Bounds Read Vulnerability in Trend Micro Security Software
CVE-2022-37348

5.5MEDIUM

Key Information:

Vendor
CVE Published:
19 September 2022

Summary

Trend Micro Security versions 2021 and 2022 are affected by a vulnerability that allows an attacker to exploit an Out-Of-Bounds Read condition. This may lead to the unauthorized access of sensitive information from memory locations that should otherwise remain protected. Additionally, attackers could potentially cause system instability, including crashes on affected machines. This issue requires prompt detection and remediation to safeguard user data and maintain system integrity.

Affected Version(s)

Trend Micro Security (Consumer) 2022 (17.7.1383 and below)

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.