PT-2023-19324 · Symantec · Symantec Protection Engine

Lukasz Bialek

+1

·

Published

2023-09-26

·

Updated

2023-09-28

·

CVE-2023-23958

CVSS v3.1

6.8

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Symantec Protection Engine versions prior to 9.1.0
Description The issue may allow sensitive information to be exposed to an unauthorized actor due to a Hash Leak.
Recommendations For Symantec Protection Engine versions prior to 9.1.0, update to version 9.1.0 or later to resolve the issue.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2023-23958

Affected Products

Symantec Protection Engine