Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2012-4351

Overview

Vulnerability Score 6.9 6.9
CVE Id CVE-2012-4351
Last Modified 18 Feb 2013 01:23:47
Published 18 Feb 2013 06:56:38
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector LOCAL
Access Complexity MEDIUM
Authentication NONE

CVE-2012-4351

Summary

Integer overflow in pgpwded.sys in Symantec PGP Desktop 10.x and Encryption Desktop 10.3.0 before MP1 allows local users to gain privileges via a crafted application.

Vulnerable Systems

Application

  • Symantec Encryption Desktop 10.3.0

  • Symantec Pgp Desktop 10.0.0

  • Symantec Pgp Desktop 10.0.1

  • Symantec Pgp Desktop 10.0.2

  • Symantec Pgp Desktop 10.0.3

  • Symantec Pgp Desktop 10.1.0

  • Symantec Pgp Desktop 10.1.1

  • Symantec Pgp Desktop 10.1.2

  • Symantec Pgp Desktop 10.2.0

  • Symantec Pgp Desktop 10.2.1


References

CONFIRM - http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2013&suid=20130213_00

BID - 57170


Last Updated: 27 May 2016 10:55:11