CVE-2011-5126: Infoleak
Blue Coat ProxySG 6.1 before SGOS 6.1.5.1 and 6.2 before SGOS 6.2.2.1 writes the secure heap to core images, which allows context-dependent attackers to obtain sensitive authentication information by leveraging read access to a downloaded core file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-5126?
CVE-2011-5126 is classified as a medium severity vulnerability due to the potential exposure of sensitive authentication information.
How can I mitigate CVE-2011-5126?
To mitigate CVE-2011-5126, upgrade to Blue Coat ProxySG SGOS version 6.1.5.1 or higher for 6.1 series or 6.2.2.1 or higher for 6.2 series.
What types of attacks could exploit CVE-2011-5126?
CVE-2011-5126 can be exploited by context-dependent attackers who have read access to core files from the vulnerable Blue Coat ProxySG versions.
What versions of Blue Coat ProxySG are affected by CVE-2011-5126?
CVE-2011-5126 affects Blue Coat ProxySG versions prior to SGOS 6.1.5.1 and 6.2.2.1.
What information can be exposed due to CVE-2011-5126?
CVE-2011-5126 can expose sensitive authentication information that is stored in the secure heap when core images are written.