CWE
908
Advisory Published
Updated

CVE-2018-18366

First published: Thu Apr 25 2019(Updated: )

Symantec Norton Security prior to 22.16.3, SEP (Windows client) prior to and including 12.1 RU6 MP9, and prior to 14.2 RU1, SEP SBE prior to Cloud Agent 3.00.31.2817, NIS-22.15.2.22, SEP-12.1.7484.7002 and SEP Cloud prior to 22.16.3 may be susceptible to a kernel memory disclosure, which is a type of issue where a specially crafted IRP request can cause the driver to return uninitialized memory.

Credit: secure@symantec.com

Affected SoftwareAffected VersionHow to fix
Symantec Endpoint Protection=11.0
Symantec Endpoint Protection=11.0-mr1
Symantec Endpoint Protection=11.0-mr2
Symantec Endpoint Protection=11.0-mr3
Symantec Endpoint Protection=11.0-mr4
Symantec Endpoint Protection=11.0-mr4-mp2
Symantec Endpoint Protection=11.0-ru5
Symantec Endpoint Protection=11.0-ru6
Symantec Endpoint Protection=11.0-ru6-mp1
Symantec Endpoint Protection=11.0-ru6-mp2
Symantec Endpoint Protection=11.0-ru6-mp3
Symantec Endpoint Protection=11.0-ru6a
Symantec Endpoint Protection=11.0-ru7
Symantec Endpoint Protection=11.0-ru7-mp1
Symantec Endpoint Protection=11.0-ru7-mp2
Symantec Endpoint Protection=11.0-ru7-mp4
Symantec Endpoint Protection=11.0-ru7-mp4a
Symantec Endpoint Protection=11.0-ry7-mp3
Symantec Endpoint Protection=12.1
Symantec Endpoint Protection=12.1-ru1
Symantec Endpoint Protection=12.1-ru1-mp1
Symantec Endpoint Protection=12.1-ru2
Symantec Endpoint Protection=12.1-ru2-mp1
Symantec Endpoint Protection=12.1-ru3
Symantec Endpoint Protection=12.1-ru4
Symantec Endpoint Protection=12.1-ru4-mp1
Symantec Endpoint Protection=12.1-ru4-mp1a
Symantec Endpoint Protection=12.1-ru4-mp1b
Symantec Endpoint Protection=12.1-ru4a
Symantec Endpoint Protection=12.1-ru5
Symantec Endpoint Protection=12.1-ru6
Symantec Endpoint Protection=12.1-ru6-mp1
Symantec Endpoint Protection=12.1-ru6-mp10
Symantec Endpoint Protection=12.1-ru6-mp2
Symantec Endpoint Protection=12.1-ru6-mp3
Symantec Endpoint Protection=12.1-ru6-mp4
Symantec Endpoint Protection=12.1-ru6-mp5
Symantec Endpoint Protection=12.1-ru6-mp6
Symantec Endpoint Protection=12.1-ru6-mp7
Symantec Endpoint Protection=12.1-ru6-mp8
Symantec Endpoint Protection=14
Symantec Endpoint Protection=14-mp1
Symantec Endpoint Protection=14.0.0-mp2
Symantec Endpoint Protection=14.0.1
Symantec Endpoint Protection=14.0.1-mp1
Symantec Endpoint Protection=14.0.1-mp2
Symantec Endpoint Protection=14.2
Symantec Endpoint Protection=14.2-mp1
Symantec Endpoint Protection=nis-22.15.2.22
Symantec Endpoint Protection=sep-12.1.7484.7002
Symantec Endpoint Protection Cloud<22.16.3
Symantec Endpoint Protection Cloud Agent<3.00.31.2817
Symantec Norton Security<22.16.3

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203