Endless Loop DoS in snabase.exe Vulnerability (CVE-2011-2007)

  Severity: MEDIUM
  CVE Identifier: CVE-2011-2007,MS11-082
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Microsoft Host Integration Server (HIS) 2004 SP1, 2006 SP1, 2009, and 2010 allows remote attackers to cause a denial of service (SNA Server service outage) via crafted TCP or UDP traffic, aka "Endless Loop DoS in snabase.exe Vulnerability."

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1004820
  Trend Micro Deep Security DPI Rule Name: 1004820 - Endless Loop DoS In snabase.exe Vulnerability (CVE-2011-2007)

  AFFECTED SOFTWARE AND VERSION

  • microsoft host_integration_server 2004
  • microsoft host_integration_server 2006
  • microsoft host_integration_server 2009
  • microsoft host_integration_server 2010

Featured Stories