Endless Loop DoS in snabase.exe Vulnerability (CVE-2011-2007)
Severity: MEDIUM
CVE Identifier: CVE-2011-2007,MS11-082
Advisory Date: JUL 21, 2015
DESCRIPTION
Microsoft Host Integration Server (HIS) 2004 SP1, 2006 SP1, 2009, and 2010 allows remote attackers to cause a denial of service (SNA Server service outage) via crafted TCP or UDP traffic, aka "Endless Loop DoS in snabase.exe Vulnerability."
TREND MICRO PROTECTION INFORMATION
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1004820
Trend Micro Deep Security DPI Rule Name: 1004820 - Endless Loop DoS In snabase.exe Vulnerability (CVE-2011-2007)
AFFECTED SOFTWARE AND VERSION
- microsoft host_integration_server 2004
- microsoft host_integration_server 2006
- microsoft host_integration_server 2009
- microsoft host_integration_server 2010