CVE-2017-15534: High severity Symantec Norton App Lock vulnerability
The Norton App Lock prior to version 1.3.0.13 can be susceptible to an authentication bypass exploit. In this type of circumstance, the exploit can allow the user to kill the app to prevent it from locking the device, thereby allowing the individual to gain device access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-15534?
The severity of CVE-2017-15534 is high with a CVSS score of 6.7.
What is the vulnerability in Norton App Lock prior to version 1.3.0.13?
The vulnerability in Norton App Lock prior to version 1.3.0.13 is an authentication bypass exploit.
How can an attacker exploit CVE-2017-15534?
An attacker can exploit CVE-2017-15534 by killing the Norton App Lock app to prevent it from locking the device and gaining device access.
How can I fix the vulnerability in Norton App Lock prior to version 1.3.0.13?
To fix the vulnerability in Norton App Lock prior to version 1.3.0.13, update to version 1.3.0.13 or later.
Where can I find more information about CVE-2017-15534?
You can find more information about CVE-2017-15534 at the following references: [SecurityFocus](http://www.securityfocus.com/bid/103377) and [Symantec Security Advisory](https://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20180326_00).