Get a Pentest and security assessment of your IT network.

News

Vulnerability Spotlight: Symantec Endpoint Protection kernel memory information disclosure vulnerability

Cisco Talos is disclosing an information leak vulnerability in the ccSetx86.sys kernel driver of Symantec Endpoint Protection Small Business Edition. The vulnerability exists in the drivers control message handler. An attacker can send specially crafted requests to cause the driver to return uninitialized chunks of kernel memory, potentially leaking sensitive information. An unprivileged user can run a program from user mode to trigger this vulnerability. The default access control for the device allows any user on the system to send IOCTL requests to the driver.”]

Source: https://blog.talosintelligence.com/2019/04/vulnerability-spotlight-symantec.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Terrorism WEEKLY DIGESTTHREAT INTELLIGENCE FEED 23rd Jul 2nd

News

Attacker.NET : Server Management & Security, Website Malware Removal & Website Security