First published: Sun May 18 2008(Updated: )
Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 has insufficient access control for deletion and modification of registry keys, which allows local users to cause a denial of service or obtain sensitive information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Symantec Deployment Solutions | =6.8 | |
Broadcom Symantec Deployment Solutions | =6.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-2288 is considered to be a moderate severity vulnerability due to its potential for causing denial of service and exposing sensitive information.
To fix CVE-2008-2288, it is recommended to upgrade to Symantec Altiris Deployment Solution version 6.9.176 or later.
The effects of CVE-2008-2288 include the inability to control access to registry keys, which can lead to a denial of service and data exposure.
CVE-2008-2288 affects local users of Symantec Altiris Deployment Solution versions 6.8.x and 6.9.x before 6.9.176.
Currently, there are no specific workarounds for CVE-2008-2288; users should install the patch or upgrade the software.