First published: Mon Nov 13 2017(Updated: )
Prior to SEE v11.1.3MP1, Symantec Endpoint Encryption can be susceptible to a null pointer de-reference issue, which can result in a NullPointerException that can lead to a privilege escalation scenario.
Credit: secure@symantec.com
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Endpoint Encryption | <=11.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15526 is a vulnerability in Symantec Endpoint Encryption that can result in a privilege escalation scenario.
The severity of CVE-2017-15526 is medium, with a score of 6.8.
CVE-2017-15526 affects Symantec Endpoint Encryption versions prior to SEE v11.1.3MP1.
CVE-2017-15526 can be exploited through a null pointer de-reference issue, which can result in a NullPointerException.
Yes, the fix for CVE-2017-15526 is to upgrade to SEE v11.1.3MP1 or later.