CVE-2024-23613: Symantec Deployment Solution Remote Code Execution
Published Jan 25, 2024
·Updated
A buffer overflow vulnerability exists in Symantec Deployment Solution version 7.9 when parsing UpdateComputer tokens. A remote, anonymous attacker can exploit this vulnerability to achieve remote code execution as SYSTEM.
Affected Software
1 affected component
Broadcom Symantec Deployment Solutions=7.9
Event History
Jan 25, 2024
CVE Published
via MITRE·11:32 PM
Data Sourced
via MITRE·11:32 PM
DescriptionSeverityWeakness
Jan 26, 2024
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-23613?
CVE-2024-23613 is considered critical due to its potential for remote code execution as SYSTEM.
2
How do I fix CVE-2024-23613?
To fix CVE-2024-23613, upgrade Symantec Deployment Solution to the latest version provided by Broadcom.
3
Can CVE-2024-23613 be exploited remotely?
Yes, CVE-2024-23613 can be exploited remotely by an anonymous attacker.
4
What versions of Symantec Deployment Solutions are affected by CVE-2024-23613?
CVE-2024-23613 affects Symantec Deployment Solutions version 7.9.
5
What type of vulnerability is CVE-2024-23613?
CVE-2024-23613 is a buffer overflow vulnerability that can lead to remote code execution.