CWE
908
Advisory Published
Updated

CVE-2018-18366

First published: Thu Apr 25 2019(Updated: )

Symantec Norton Security prior to 22.16.3, SEP (Windows client) prior to and including 12.1 RU6 MP9, and prior to 14.2 RU1, SEP SBE prior to Cloud Agent 3.00.31.2817, NIS-22.15.2.22, SEP-12.1.7484.7002 and SEP Cloud prior to 22.16.3 may be susceptible to a kernel memory disclosure, which is a type of issue where a specially crafted IRP request can cause the driver to return uninitialized memory.

Credit: secure@symantec.com

Affected SoftwareAffected VersionHow to fix
Symantec Endpoint Protection=11.0
Symantec Endpoint Protection=11.0-mr1
Symantec Endpoint Protection=11.0-mr2
Symantec Endpoint Protection=11.0-mr3
Symantec Endpoint Protection=11.0-mr4
Symantec Endpoint Protection=11.0-mr4-mp2
Symantec Endpoint Protection=11.0-ru5
Symantec Endpoint Protection=11.0-ru6
Symantec Endpoint Protection=11.0-ru6-mp1
Symantec Endpoint Protection=11.0-ru6-mp2
Symantec Endpoint Protection=11.0-ru6-mp3
Symantec Endpoint Protection=11.0-ru6a
Symantec Endpoint Protection=11.0-ru7
Symantec Endpoint Protection=11.0-ru7-mp1
Symantec Endpoint Protection=11.0-ru7-mp2
Symantec Endpoint Protection=11.0-ru7-mp4
Symantec Endpoint Protection=11.0-ru7-mp4a
Symantec Endpoint Protection=11.0-ry7-mp3
Symantec Endpoint Protection=12.1
Symantec Endpoint Protection=12.1-ru1
Symantec Endpoint Protection=12.1-ru1-mp1
Symantec Endpoint Protection=12.1-ru2
Symantec Endpoint Protection=12.1-ru2-mp1
Symantec Endpoint Protection=12.1-ru3
Symantec Endpoint Protection=12.1-ru4
Symantec Endpoint Protection=12.1-ru4-mp1
Symantec Endpoint Protection=12.1-ru4-mp1a
Symantec Endpoint Protection=12.1-ru4-mp1b
Symantec Endpoint Protection=12.1-ru4a
Symantec Endpoint Protection=12.1-ru5
Symantec Endpoint Protection=12.1-ru6
Symantec Endpoint Protection=12.1-ru6-mp1
Symantec Endpoint Protection=12.1-ru6-mp10
Symantec Endpoint Protection=12.1-ru6-mp2
Symantec Endpoint Protection=12.1-ru6-mp3
Symantec Endpoint Protection=12.1-ru6-mp4
Symantec Endpoint Protection=12.1-ru6-mp5
Symantec Endpoint Protection=12.1-ru6-mp6
Symantec Endpoint Protection=12.1-ru6-mp7
Symantec Endpoint Protection=12.1-ru6-mp8
Symantec Endpoint Protection=14
Symantec Endpoint Protection=14-mp1
Symantec Endpoint Protection=14.0.0-mp2
Symantec Endpoint Protection=14.0.1
Symantec Endpoint Protection=14.0.1-mp1
Symantec Endpoint Protection=14.0.1-mp2
Symantec Endpoint Protection=14.2
Symantec Endpoint Protection=14.2-mp1
Symantec Endpoint Protection=nis-22.15.2.22
Symantec Endpoint Protection=sep-12.1.7484.7002
Symantec Endpoint Protection<22.16.3
Symantec Endpoint Protection Cloud<3.00.31.2817
Symantec Norton Security<22.16.3

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2018-18366?

    CVE-2018-18366 has been classified with a medium severity rating due to its potential impact on kernel memory disclosure.

  • How do I fix CVE-2018-18366?

    To remediate CVE-2018-18366, update to Symantec Norton Security version 22.16.3 or higher, and ensure SEP versions are at least 12.1 RU7 or 14.2 RU1.

  • Which software is affected by CVE-2018-18366?

    CVE-2018-18366 affects Symantec Norton Security, various versions of Symantec Endpoint Protection, and specific releases of SEP Cloud and SEP SBE.

  • What are the potential risks of CVE-2018-18366?

    The risks associated with CVE-2018-18366 include unauthorized access to sensitive kernel memory, which could lead to further exploitation.

  • Is there a workaround for CVE-2018-18366?

    Currently, there are no known workarounds for CVE-2018-18366 other than applying the recommended updates to affected Symantec products.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203