CVE-2018-18364: High severity symantec ghost solution suite vulnerability
Symantec Ghost Solution Suite (GSS) versions prior to 3.3 RU1 may be susceptible to a DLL hijacking vulnerability, which is a type of issue whereby a potential attacker attempts to execute unexpected code on your machine. This occurs via placement of a potentially foreign file (DLL) that the attacker then attempts to run via a linked application.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-18364?
CVE-2018-18364 is a DLL hijacking vulnerability in Symantec Ghost Solution Suite (GSS) versions prior to 3.3 RU1.
How does DLL hijacking vulnerability occur?
A DLL hijacking vulnerability occurs when a potentially foreign file (DLL) is placed on the machine by an attacker, allowing them to execute unexpected code.
Which versions of Symantec Ghost Solution Suite are affected by CVE-2018-18364?
Symantec Ghost Solution Suite versions 2.0 to 3.2 RU7 are affected by CVE-2018-18364.
What is the severity of CVE-2018-18364?
The severity of CVE-2018-18364 is high, with a CVSS score of 7.3.
How can I fix CVE-2018-18364?
To fix CVE-2018-18364, upgrade to Symantec Ghost Solution Suite version 3.3 RU1 or later.