CVE-2013-5008: Infoleak
The agent and task-agent components in Symantec Management Platform 7.0 and 7.1 before 7.1 SP2 Mp1.1v7 rollup, as used in certain Altiris products, use the same registry-entry encryption key across different customers' installations, which makes it easier for local users to obtain sensitive information about package-server access, or cause a denial of service, by leveraging knowledge of this key.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5008?
CVE-2013-5008 has been classified with a medium severity level due to the potential exposure of sensitive information.
How do I fix CVE-2013-5008?
To mitigate CVE-2013-5008, upgrade your Symantec Management Platform to version 7.1 SP2 Mp1.1v7 or later.
What systems are affected by CVE-2013-5008?
CVE-2013-5008 affects Symantec Management Platform versions 7.0 and 7.1 before 7.1 SP2 Mp1.1v7.
What type of data is exposed in CVE-2013-5008?
CVE-2013-5008 allows local users to potentially access sensitive information due to the use of a common encryption key across installations.
Is CVE-2013-5008 being actively exploited?
As of the last update, there have been no reported active exploits for CVE-2013-5008, but the vulnerability should still be addressed promptly.