CVE-2021-25227

Severity CVSS v4.0:
Pending analysis
Type:
CWE-400 Uncontrolled Resource Consumption ('Resource Exhaustion')
Publication date:
04/02/2021
Last modified:
08/02/2021

Description

Trend Micro Antivirus for Mac 2021 (Consumer) is vulnerable to a memory exhaustion vulnerability that could lead to disabling all the scanning functionality within the application. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability - i.e. the attacker must already have access to the target system (either legitimately or via another exploit).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trendmicro:antivirus:9.0:*:*:*:*:macos:*:*
cpe:2.3:a:trendmicro:antivirus:10.0:*:*:*:*:macos:*:*
cpe:2.3:a:trendmicro:antivirus:10.5:*:*:*:*:macos:*:*
cpe:2.3:a:trendmicro:antivirus:11.0:*:*:*:*:macos:*:*