CVE-2017-13677: High severity broadcom symantec advanced secure gateway vulnerability
Published Apr 11, 2018
·Updated
Denial-of-service (DoS) vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles. A remote attacker can use crafted HTTP/HTTPS requests to cause denial-of-service through management console application crashes.
Affected Software
5 affected components
Broadcom Advanced Secure Gateway>=6.6<6.6.5.14
Broadcom Advanced Secure Gateway>=6.7<6.7.3.1
Broadcom Symantec Proxysg>=6.5<6.5.10.8
Broadcom Symantec Proxysg>=6.6<6.6.5.14
Broadcom Symantec Proxysg>=6.7<6.7.3.1
Event History
Apr 11, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2017-13677?
CVE-2017-13677 is a denial-of-service (DoS) vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles.
2
How does CVE-2017-13677 affect the affected software?
CVE-2017-13677 affects the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles.
3
What is the severity of CVE-2017-13677?
CVE-2017-13677 has a severity rating of 7.5 (high).
4
How can a remote attacker exploit CVE-2017-13677?
A remote attacker can use crafted HTTP/HTTPS requests to cause denial-of-service through management console application crashes.
5
How can I fix CVE-2017-13677?
To fix CVE-2017-13677, update the affected software to a version that is not vulnerable.