Views:

Release Date: November 22, 2019

Platform: Windows OS

Summary

Trend Micro has released a new version of the Trend Micro RescueDisk Tool (Rescuedisk.exe) that updates a 3rd party component that is affected by a known vulnerability.

New version

Trend Micro RescueDisk Tool version 3.0.0.1031 is the minimum version that addresses this issue.

Solution

Trend Micro has released a new build of the tool to resolve this issue:

ToolUpdated BuildPlatform
Trend Micro RescueDisk Tool RescueDisk version 3.0.0.1031 with 7zSfx version 19.00 Windows OS

Details

The latest version of Trend Micro RescueDisk (3.0.0.1031) updates an older 3rd party component (7zSfx) version that is vulnerable to a search order load flaw remote code execution vulnerability (reference: CVE-2016-7804).

Trend Micro has received no reports nor is aware of any actual attacks against the affected tool related to this vulnerability at this time.

Acknowledgement

Trend Micro would like to thank John Page aka hyp3rlinx (http://hyp3rlinx.altervista.org/) for responsibly disclosing this issue and working with Trend Micro to help protect our customers.

Additional Assistance

Customers who have questions are encouraged to contact Trend Micro technical support for further assistance.

Comments (0)
Add a comment