CVE-2015-8801: Race Condition
Race condition in the client in Symantec Endpoint Protection (SEP) 12.1 before RU6 MP5 allows local users to bypass intended restrictions on USB file transfer by conducting filesystem operations before the SEP device manager recognizes a new USB device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8801?
CVE-2015-8801 is categorized as a medium-severity vulnerability due to its ability to allow local users to bypass restrictions on USB file transfers.
How do I fix CVE-2015-8801?
To fix CVE-2015-8801, upgrade to Symantec Endpoint Protection version 12.1 RU6 MP5 or later.
Who is affected by CVE-2015-8801?
CVE-2015-8801 affects users of Symantec Endpoint Protection version 12.1 before RU6 MP5.
What type of attack does CVE-2015-8801 enable?
CVE-2015-8801 enables local users to bypass device restrictions, facilitating unauthorized USB file transfers.
Is a workaround available for CVE-2015-8801?
No official workaround is documented for CVE-2015-8801; the best mitigation is to apply the recommended software update.