First published: Tue Feb 11 2020(Updated: )
Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 MP1 and prior to 14.2.5569.2100 respectively, may be susceptible to an out of bounds vulnerability, which is a type of issue that results in an existing application reading memory outside of the bounds of the memory that had been allocated to the program.
Credit: secure@symantec.com
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Endpoint Protection | =11.0 | |
Symantec Endpoint Protection | =11.0-mr1 | |
Symantec Endpoint Protection | =11.0-mr2 | |
Symantec Endpoint Protection | =11.0-mr3 | |
Symantec Endpoint Protection | =11.0-mr4 | |
Symantec Endpoint Protection | =11.0-mr4-mp1a | |
Symantec Endpoint Protection | =11.0-mr4-mp2 | |
Symantec Endpoint Protection | =11.0-ru5 | |
Symantec Endpoint Protection | =11.0-ru6 | |
Symantec Endpoint Protection | =11.0-ru6-mp1 | |
Symantec Endpoint Protection | =11.0-ru6-mp2 | |
Symantec Endpoint Protection | =11.0-ru6-mp3 | |
Symantec Endpoint Protection | =11.0-ru6a | |
Symantec Endpoint Protection | =11.0-ru7 | |
Symantec Endpoint Protection | =11.0-ru7-mp1 | |
Symantec Endpoint Protection | =11.0-ru7-mp2 | |
Symantec Endpoint Protection | =11.0-ru7-mp3 | |
Symantec Endpoint Protection | =11.0-ru7-mp4 | |
Symantec Endpoint Protection | =11.0-ru7-mp4a | |
Symantec Endpoint Protection | =12.1 | |
Symantec Endpoint Protection | =12.1-ru1 | |
Symantec Endpoint Protection | =12.1-ru1-p1 | |
Symantec Endpoint Protection | =12.1-ru2 | |
Symantec Endpoint Protection | =12.1-ru2-mp1 | |
Symantec Endpoint Protection | =12.1-ru3 | |
Symantec Endpoint Protection | =12.1-ru4 | |
Symantec Endpoint Protection | =12.1-ru4-mp1 | |
Symantec Endpoint Protection | =12.1-ru4-mp1a | |
Symantec Endpoint Protection | =12.1-ru4-mp1b | |
Symantec Endpoint Protection | =12.1-ru4a | |
Symantec Endpoint Protection | =12.1-ru5 | |
Symantec Endpoint Protection | =12.1-ru6 | |
Symantec Endpoint Protection | =12.1-ru6-mp1 | |
Symantec Endpoint Protection | =12.1-ru6-mp2 | |
Symantec Endpoint Protection | =12.1-ru6-mp3 | |
Symantec Endpoint Protection | =12.1-ru6-mp4 | |
Symantec Endpoint Protection | =12.1-ru6-mp5 | |
Symantec Endpoint Protection | =12.1-ru6-mp6 | |
Symantec Endpoint Protection | =12.1-ru6-mp7 | |
Symantec Endpoint Protection | =12.1-ru6-mp8 | |
Symantec Endpoint Protection | =12.1-ru6-mp9 | |
Symantec Endpoint Protection | =14.0.0 | |
Symantec Endpoint Protection | =14.0.0-mp1 | |
Symantec Endpoint Protection | =14.0.0-mp2 | |
Symantec Endpoint Protection | =14.0.1 | |
Symantec Endpoint Protection | =14.0.1-mp1 | |
Symantec Endpoint Protection | =14.0.1-mp2 | |
Symantec Endpoint Protection | =14.2 | |
Symantec Endpoint Protection | =14.2-mp1 | |
Symantec Endpoint Protection | =14.2-ru1 | |
Symantec Endpoint Protection | =14.2-ru1_mp1 | |
Symantec Endpoint Protection | =14.2-ru2 | |
Symantec Endpoint Protection | =12.0-rtm | |
Symantec Endpoint Protection | =12.0-ru1 | |
Symantec Endpoint Protection | =12.1 | |
Symantec Endpoint Protection | =12.1-ru1 | |
Symantec Endpoint Protection | =12.1-ru1-mp1 | |
Symantec Endpoint Protection | =12.1-ru2 | |
Symantec Endpoint Protection | =12.1-ru2-mp1 | |
Symantec Endpoint Protection | =12.1-ru3 | |
Symantec Endpoint Protection | =12.1-ru4 | |
Symantec Endpoint Protection | =12.1-ru4-mp1 | |
Symantec Endpoint Protection | =12.1-ru4-mp1a | |
Symantec Endpoint Protection | =12.1-ru4-mp1b | |
Symantec Endpoint Protection | =12.1-ru4a | |
Symantec Endpoint Protection | =12.1-ru5 | |
Symantec Endpoint Protection | =12.1-ru6 | |
Symantec Endpoint Protection | =12.1-ru6_mp1 | |
Symantec Endpoint Protection | =12.1-ru6_mp10 | |
Symantec Endpoint Protection | =12.1-ru6_mp2 | |
Symantec Endpoint Protection | =12.1-ru6_mp3 | |
Symantec Endpoint Protection | =12.1-ru6_mp4 | |
Symantec Endpoint Protection | =12.1-ru6_mp5 | |
Symantec Endpoint Protection | =12.1-ru6_mp6 | |
Symantec Endpoint Protection | =12.1-ru6_mp7 | |
Symantec Endpoint Protection | =12.1-ru6_mp8 | |
Symantec Endpoint Protection | =12.1-ru6_mp9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-5826 is classified as a medium severity vulnerability due to its potential to cause out-of-bounds memory access.
To mitigate CVE-2020-5826, you should update Symantec Endpoint Protection to versions 14.2 RU2 MP1 or 14.2.5569.2100 or later.
CVE-2020-5826 affects Symantec Endpoint Protection prior to 14.2 RU2 MP1, including versions 11.0, 12.1, and prior releases of 14.x.
CVE-2020-5826 represents an out-of-bounds vulnerability that allows an application to read unauthorized memory.
CVE-2020-5826 does not explicitly indicate remote exploitation capabilities, focusing on local application vulnerabilities instead.