A KERedirect Untrusted Pointer Dereference Privilege Escalation vulnerability in Trend Micro Antivirus for Mac (Consumer) 7.0 (2017) and above could allow a local attacker to escalate privileges on vulnerable installations. The issue results from the lack of proper validation function on 0x6F4E offset user-supplied buffer. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: trendmicro
Published: 2018-10-23T14:00:00
Updated: 2024-08-05T11:08:21.796Z
Reserved: 2018-10-15T00:00:00
Link: CVE-2018-18329
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-10-23T14:29:03.763
Modified: 2024-11-21T03:55:43.507
Link: CVE-2018-18329
Redhat
No data.