Views:

What Trend Micro products are affected?

Product/VersionComponent AffectedSeveritySolution/Additional Information
Deep Security 8.0, 9.0Deep Security Relay (DSR)Very LowCritical Patch
SafeSync for Enterprise 2.1Windows ClientNACritical Patch
Serverprotect for Linux (SPLX) 3.0Admin UIVery LowCritical Patch
Endpoint Application Control (TMEAC) 1.0Apache Tomcat web server packageLowCritical Patch
Portable Security (TMPS) 2.0Remote Communication ModuleLowCritical Patch
House Call 8.0SmartScanVery LowFixed through ActiveUpdate (AU)
InterScan Messaging Security Suite (IMSS) for Linux 7.1 SP1SmartScanVery LowCritical patch will be released on May 15
InterScan Messaging Security Virtual Appliance (IMSVA)  8.5 and 8.5 SP1SmartScanVery LowCritical patch will be released on May 15
OfficeScan (OSCE) 11.0*SmartScanVery LowCritical Patch
Titanium 7.0 and 7.2SmartScanVery LowFixed via Active Update (AU)
Worry Free Business Security (WFBS) 9.0*SmartScanVery LowRepacked full installer as well as Critical Patch 1439

Affected only if the server is configured to use SmartScan as the default scan method. When traditional scan is used, the product is not affected by the vulnerability.

What Trend Micro products are not affected?

ProductVersionAffected?Notes
Advanced Reporting and Management (ARM)1.0, 1.5, 1.6NoNot using OpenSSL 1.01~1.01f
Case Diagnostic Tool (CDT)2.0, 2.6NoNot using OpenSSL
Core Protection Module (CPM)1.6, 10.5, 10.6, 10.6 SP1, 10.6 SP2NoNot using OpenSSL 1.01~1.01f
Core Protection Module (CPM) for Mac1.1NoNot using OpenSSL 1.01~1.01f
CSC (Stargate)6.6NoNot using OpenSSL 1.01~1.01f
DDA (Deep Discovery Advisor)2.95, 3.0, 3.0 SP1, 3.1NoNot using OpenSSL 1.01~1.01f
DDI (Deep Discovery Inspector)3.0, 3.1, 3.2, 3.5, 3.6NoNot using OpenSSL 1.01~1.01f
Deep Edge 3001.5, 2.0, 2.1NoNot using OpenSSL 1.01~1.01f
Deep Security for Web Apps2NoNot using OpenSSL
Data Loss Prevention (DLP)3.1, 5.0, 5.2, 5.5, 5.6, 5.7NoNot using OpenSSL 1.01~1.01f
Email Security Platform for Service Providers - White Label3NoNot using OpenSSL 1.01~1.01f
eManager5.22, 5.5, 5.7, 6, 6.6, 6.7NoNot using OpenSSL
eManager(V6.8+)6.8, 7.0, 7.1, 7.5NoNot using OpenSSL 1.01~1.01f
Facebook Privacy Scan App (FPSA) NoNot using OpenSSL 1.01~1.01f
Hosted Email Security (IMHS)1.9, 2.0NoNot using OpenSSL 1.01~1.01f
HouseCall7.1NoNot using OpenSSL
HouseCall_OEM7.1 JPNoNot using OpenSSL
InterScan Gateway Security Appliance (IGSA)1.5(TW, JP)NoNot using OpenSSL 1.01~1.01f
IM Security1.5, 1.51NoNot using OpenSSL
InterScan Messaging Security Appliance (IMSA)7NoNot using OpenSSL 1.01~1.01f
InterScan Messaging Security Suite (IMSS)7.0, 7.0 SP1,7.1, 7.1 SP1 WinNoNot using OpenSSL 1.01~1.01f
InterScan Messaging Security Virtual Appliance (IMSVA)7.0, 8.0, 8.2NoNot using OpenSSL 1.01~1.01f
ISSS (Integrated Smart Scan Server)1NoNot using OpenSSL 1.01~1.01f
InterScan VirusWall (ISVW)7NoNot using OpenSSL 1.01~1.01f
ISVW for SMB7NoNot using OpenSSL 1.01~1.01f
iTIS2NoNot using OpenSSL
iTIS3NoNot using OpenSSL
iTMMS1NoNot using OpenSSL 1.01~1.01f
InterScan Web Security Appliance (IWSA)3.1 SP1NoNot using OpenSSL 1.01~1.01f
InterScan Web Security as a Service (IWSaaS)1.8NoNot using OpenSSL 1.01~1.01f
InterScan Web Security Suite (IWSS)3.1NoNot using OpenSSL 1.01~1.01f
InterScan Web Security Virtual Appliance (IWSVA)5.0, 5.1, 5.5, 5.6, 6.0(EN)NoNot using OpenSSL 1.01~1.01f
Licensing Management Portal (LMP) NoNot using OpenSSL
Network VirusWall Enforcer (NVWE)1.3(JP), 1.8(JP), 2.0 & SP1 ,3.0, 3.1(EN), 3.2(EN, JP)NoNot using OpenSSL 1.01~1.01f
OfficeScan (OSCE)8.0 SP1, 10, 10 SP1, 10.5, 10.6, 10.6 SP1, 10.6 SP2, 10.6 SP3NoNot using OpenSSL 1.01~1.01f
OfficeScan (OSCE) Toolbox1NoNot using OpenSSL 1.01~1.01f
PortalProtect2.0, 2.1NoNot using OpenSSL
PortalProtect2.0, 2.1NoNot using OpenSSL
ProtectLink1NoNot using OpenSSL 1.01~1.01f
Rootkit Buster NoNot using OpenSSL
SafeSync5NoNot using OpenSSL 1.01~1.01f
SafeSync for Business5.1NoNot using OpenSSL 1.01~1.01f
SafeSync for xSP2NoNot using OpenSSL 1.01~1.01f
SafeSync Mobile1.2NoNot using OpenSSL 1.01~1.01f
ScanMail for Exchange (SMEX)10, 10 SP1, 10.2, 10.2 SP2, 11NoNot using OpenSSL
ScanMail for IBM Domino (SMID)5.6NoNot using OpenSSL 1.01~1.01f
ScanMail for Lotus Domino (SMLD)3.0, 3.1, 5.0, 5.5NoNot using OpenSSL 1.01~1.01f
ScanMail Mobile Security for Exchange (SMMS)1NoNot using OpenSSL
SecureCloud2.0, 3.0, 3.5, 3.6NoNot using OpenSSL 1.01~1.01f
ServerProtect Windows/Netware (SPNT)5.7, 5.8NoNot using OpenSSL
Smart Protection Server (SPS)3.0NoNot using OpenSSL 1.01~1.01f
Smart Surfing1.6NoNot using OpenSSL
Threat Discovery Appliance (TDA)2, 2.5, 2.55, 2.6NoNot using OpenSSL 1.01~1.01f
Titanium/TISTitanium (6.x/5.x/3.x/2.x), TIS(17.x/16.x)NoNot using OpenSSL 1.01~1.01f
Control Manager (TMCM)5.5, 6.0, 6.0 SP1NoNot using OpenSSL 1.01~1.01f
TMDP (Direct Pass)1.36, 1.8, 1.9NoNot using OpenSSL
Endpoint Encryption (TMEE)5.5, 5.6, 5.7, 5.8NoNot using OpenSSL
Endpoint Encryption (TMEE) Data Armor3.0, 5.0NoNot using OpenSSL
Endpoint Encryption (TMEE) Drive Armor3.0, 5.0NoNot using OpenSSL
Endpoint Encryption (TMEE) File Armor3.0, 5.0NoNot using OpenSSL
Endpoint Encryption (TMEE) Key Armor3.0, 5.0NoNot using OpenSSL
Endpoint Encryption (TMEE) Policy Server3.1, 5.0NoNot using OpenSSL
Trend Micro Email Encryption Gateway (TMEEG)5, 5.5NoNot using OpenSSL 1.01~1.01f
Information Center (TMIC)2.5NoNot using OpenSSL 1.01~1.01f
Mobile Backup and Restore (MBR)1.2, 1.3.1, 1.4NoNot using OpenSSL 1.01~1.01f
Mobile Security (TMMS) for Cellcom2.1NoNot using OpenSSL 1.01~1.01f
Mobile Security (TMMS) for Consumer1.2, 2.0, 2.1, 2.2, 2.5, 2.6, 3.0, 3.1, 3.5, 5.05NoNot using OpenSSL
Mobile Security (TMMS) for Enterprise5.0, 5.1,5.5, 7.0, 7.1, 8.0, 9.0NoNot using OpenSSL 1.01~1.01f
Mobile Security (TMMS) for KDDI2.0, 2.1NoNot using OpenSSL
Mobile Security (TMMS) for NTTW2.0, 2.0.1NoNot using OpenSSL
Mobile Security (TMMS) for OEM2.1, 2.1.1, 2.2, 3.1, 3.5NoNot using OpenSSL
Online Guardian (TMOG)1.0, 1.5, 1.6,1.8NoNot using OpenSSL
Online Guardian (TMOG)-Server1NoNot using OpenSSL
Trend Micro Kids Safety Protection for PS31NoNot using OpenSSL
Trend Micro Longevity3NoNot using OpenSSL
Trend Micro Web Security for PS31NoNot using OpenSSL
Trend Secure - My Account NoNot using OpenSSL 1.01~1.01f
Worry-Free Business Security Standard/Advanced (WFBS)5.1, 6.0, 7.0, 8.0NoNot using OpenSSL 1.01~1.01f
WFMS2NoNot using OpenSSL 1.01~1.01f
Worry-Free Remote Manager (WFRM)2.5, 2.6, 3.0, 3.1NoNot using OpenSSL 1.01~1.01f

What if my product is not listed?

If the product has not reached End-of-Support, it is most likely that Trend Micro is still analyzing the vulnerability and it’s impact on your product. As soon as the analysis is completed, the product will be added in the list.

What if I have additional questions?

For additional inquiries, contact Trend Micro Technical Support.