CVE-2012-3581: Infoleak
Published Aug 29, 2012
·Updated
Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers to obtain potentially sensitive information about component versions via unspecified vectors.
Affected Software
5 affected components
Symantec Messaging Gateway<=9.5.4
Symantec Messaging Gateway=9.5
Symantec Messaging Gateway=9.5.1
Symantec Messaging Gateway=9.5.2
Symantec Messaging Gateway=9.5.3
Event History
Aug 29, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-3581?
CVE-2012-3581 has a medium severity rating due to its potential to leak sensitive information.
2
How do I fix CVE-2012-3581?
To fix CVE-2012-3581, upgrade Symantec Messaging Gateway to version 10.0 or later.
3
What versions of Symantec Messaging Gateway are affected by CVE-2012-3581?
CVE-2012-3581 affects versions of Symantec Messaging Gateway up to and including 9.5.4.
4
What types of information can be leaked by CVE-2012-3581?
CVE-2012-3581 may allow attackers to obtain component version information, which could aid in further attacks.
5
Is there a workaround for CVE-2012-3581?
There is no specified workaround for CVE-2012-3581; updating to a fixed version is recommended.