CVE-2016-8012: High severity symantec data loss prevention vulnerability
Access control vulnerability in Intel Security Data Loss Prevention Endpoint (DLPe) 9.4.200 and 9.3.600 allows authenticated users with Read-Write-Execute permissions to inject hook DLLs into other processes via pages in the target process memory get.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-8012?
CVE-2016-8012 is considered a medium severity vulnerability due to its impact on access control.
How do I fix CVE-2016-8012?
To fix CVE-2016-8012, upgrade affected Intel Security Data Loss Prevention Endpoint software to version 9.4.201 or higher.
What versions are affected by CVE-2016-8012?
CVE-2016-8012 affects McAfee Data Loss Prevention Endpoint versions 9.3.0 to 9.3.600 and 9.4.0 to 9.4.200.
What does CVE-2016-8012 exploit?
CVE-2016-8012 exploits the vulnerability in access control allowing authenticated users to inject DLLs into other processes.
Who is impacted by CVE-2016-8012?
Organizations using McAfee Data Loss Prevention Endpoint versions 9.3.600 and 9.4.200 are at risk due to CVE-2016-8012.