Published:2018/01/16  Last Updated:2018/01/16

JVNVU#95303354
Multiple vulnerabilities in Deep Discovery Email Inspector

Overview

Deep Discovery Email Inspector provided by Trend Micro Incorporated contains multiple vulnerabilities.

Products Affected

  • Deep Discovery Email Inspector Version 2.5.1 prior to Critcal Patch 1178

Description

Deep Discovery Email Inspector provided by Trend Micro Incorporated contains multiple vulnerabilities.

Impact

The possible impacts are as follows:

  • A user may execute arbitrary code
  • A user may be able to cause a denial-of-service (DoS) condition

Solution

Apply the Patch
Apply the appropriate patch according to the information provided by the developer.
The developer has released the patch listed below to fix these vulnerabilities.

  • Deep Discovery Email Inspector Version 2.5.1 Critcal Patch 1178

References

JPCERT/CC Addendum

This advisory mentions the vulnerabilities that are published on the TippingPoint Zero Day Initiative advisories listed below.

ZDI-17-151 ZDI-17-152 ZDI-17-153 ZDI-17-154 ZDI-17-155
ZDI-17-156 ZDI-17-157 ZDI-17-158 ZDI-17-159

Vulnerability Analysis by JPCERT/CC

Credit

Trend Micro Incorporated reported this vulnerability to JPCERT/CC to notify users of its solution through JVN.

Other Information

JPCERT Alert
JPCERT Reports
CERT Advisory
CPNI Advisory
TRnotes
CVE
JVN iPedia