CVE-2018-18364: High severity symantec ghost solution suite vulnerability

Published Feb 8, 2019
·
Updated

Symantec Ghost Solution Suite (GSS) versions prior to 3.3 RU1 may be susceptible to a DLL hijacking vulnerability, which is a type of issue whereby a potential attacker attempts to execute unexpected code on your machine. This occurs via placement of a potentially foreign file (DLL) that the attacker then attempts to run via a linked application.

Affected Software

24 affected components
Symantec Ghost Solution Suite=2.0
Symantec Ghost Solution Suite=2.5
Symantec Ghost Solution Suite=3.0
Symantec Ghost Solution Suite=3.0-hf1
Symantec Ghost Solution Suite=3.0-hf2
Symantec Ghost Solution Suite=3.0-hf3
Symantec Ghost Solution Suite=3.0-hf4
Symantec Ghost Solution Suite=3.0-hf5
Symantec Ghost Solution Suite=3.1
Symantec Ghost Solution Suite=3.1-mp1
Symantec Ghost Solution Suite=3.1-mp2
Symantec Ghost Solution Suite=3.1-mp3
Symantec Ghost Solution Suite=3.1-mp4
Symantec Ghost Solution Suite=3.1-mp5
Symantec Ghost Solution Suite=3.1-mp6
Symantec Ghost Solution Suite=3.2
Symantec Ghost Solution Suite=3.2-ru1
Symantec Ghost Solution Suite=3.2-ru2
Symantec Ghost Solution Suite=3.2-ru3
Symantec Ghost Solution Suite=3.2-ru4
Symantec Ghost Solution Suite=3.2-ru5
Symantec Ghost Solution Suite=3.2-ru6
Symantec Ghost Solution Suite=3.2-ru7
Symantec Ghost Solution Suite=3.3

Event History

Feb 8, 2019
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionWeakness

Frequently Asked Questions

1

What is CVE-2018-18364?

CVE-2018-18364 is a DLL hijacking vulnerability in Symantec Ghost Solution Suite (GSS) versions prior to 3.3 RU1.

2

How does DLL hijacking vulnerability occur?

A DLL hijacking vulnerability occurs when a potentially foreign file (DLL) is placed on the machine by an attacker, allowing them to execute unexpected code.

3

Which versions of Symantec Ghost Solution Suite are affected by CVE-2018-18364?

Symantec Ghost Solution Suite versions 2.0 to 3.2 RU7 are affected by CVE-2018-18364.

4

What is the severity of CVE-2018-18364?

The severity of CVE-2018-18364 is high, with a CVSS score of 7.3.

5

How can I fix CVE-2018-18364?

To fix CVE-2018-18364, upgrade to Symantec Ghost Solution Suite version 3.3 RU1 or later.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203