CVE-2018-18366
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Symantec Norton Security prior to 22.16.3, SEP (Windows client) prior to and including 12.1 RU6 MP9, and prior to 14.2 RU1, SEP SBE prior to Cloud Agent 3.00.31.2817, NIS-22.15.2.22, SEP-12.1.7484.7002 and SEP Cloud prior to 22.16.3 may be susceptible to a kernel memory disclosure, which is a type of issue where a specially crafted IRP request can cause the driver to return uninitialized memory.
Symantec Norton Security, versiones anteriores a 22.16.3, SEP (cliente Windows) versiones anteriores e incluyendo a 12.1 RU6 MP9 y anteriores a 14.2 RU1, SEP SBE anteriores a Cloud Agent 3.00.31.2817, NIS-22.15.2.22, SEP-12.1.7484.7002 y SEP Cloud en versiones anteriores a 22.16.3 pueden ser susceptibles a una revelación de la memoria del núcleo, que es un tipo de problema en el que una petición IRP especialmente diseñada puede hacer que el controlador devuelva la memoria no inicializada.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-10-15 CVE Reserved
- 2019-04-25 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-908: Use of Uninitialized Resource
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/107994 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://support.symantec.com/en_US/article.SYMSA1479.html | 2020-08-24 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | mr1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | mr2, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | mr3, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | mr4, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | mr4-mp2, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru5, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru6, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru6-mp1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru6-mp2, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru6-mp3, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru6a, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru7, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru7-mp1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru7-mp2, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru7-mp4, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ru7-mp4a, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 11.0 Search vendor "Symantec" for product "Endpoint Protection" and version "11.0" | ry7-mp3, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru1-mp1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru2, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru2-mp1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru3, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru4, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru4-mp1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru4-mp1a, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru4-mp1b, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru4a, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru5, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru6, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru6-mp1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru6-mp10, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru6-mp2, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru6-mp3, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru6-mp4, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru6-mp5, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru6-mp6, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru6-mp7, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 12.1 Search vendor "Symantec" for product "Endpoint Protection" and version "12.1" | ru6-mp8, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 14 Search vendor "Symantec" for product "Endpoint Protection" and version "14" | windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 14 Search vendor "Symantec" for product "Endpoint Protection" and version "14" | mp1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 14.0.0 Search vendor "Symantec" for product "Endpoint Protection" and version "14.0.0" | mp2, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 14.0.1 Search vendor "Symantec" for product "Endpoint Protection" and version "14.0.1" | windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 14.0.1 Search vendor "Symantec" for product "Endpoint Protection" and version "14.0.1" | mp1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 14.0.1 Search vendor "Symantec" for product "Endpoint Protection" and version "14.0.1" | mp2, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 14.2 Search vendor "Symantec" for product "Endpoint Protection" and version "14.2" | windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | 14.2 Search vendor "Symantec" for product "Endpoint Protection" and version "14.2" | mp1, windows |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | nis-22.15.2.22 Search vendor "Symantec" for product "Endpoint Protection" and version "nis-22.15.2.22" | small_business |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Search vendor "Symantec" for product "Endpoint Protection" | sep-12.1.7484.7002 Search vendor "Symantec" for product "Endpoint Protection" and version "sep-12.1.7484.7002" | small_business |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Cloud Search vendor "Symantec" for product "Endpoint Protection Cloud" | < 22.16.3 Search vendor "Symantec" for product "Endpoint Protection Cloud" and version " < 22.16.3" | - |
Affected
| ||||||
Symantec Search vendor "Symantec" | Endpoint Protection Cloud Agent Search vendor "Symantec" for product "Endpoint Protection Cloud Agent" | < 3.00.31.2817 Search vendor "Symantec" for product "Endpoint Protection Cloud Agent" and version " < 3.00.31.2817" | small_business |
Affected
| ||||||
Symantec Search vendor "Symantec" | Norton Security Search vendor "Symantec" for product "Norton Security" | < 22.16.3 Search vendor "Symantec" for product "Norton Security" and version " < 22.16.3" | windows |
Affected
|