First published: Thu Feb 18 2016(Updated: )
The LDAP service in Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote attackers to cause a denial of service (heap memory corruption and service outage) via crafted requests.
Credit: secure@symantec.com
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Encryption Management Server | <=3.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-8149 is categorized as a high severity vulnerability that can lead to a denial of service.
To fix CVE-2015-8149, you should upgrade Symantec Encryption Management Server to version 3.3.2 MP12 or later.
CVE-2015-8149 affects users of Symantec Encryption Management Server versions prior to MP12.
CVE-2015-8149 can be exploited through crafted LDAP requests that cause heap memory corruption.
The impact of CVE-2015-8149 includes service outages and potential system instability due to memory corruption.