Symantec Access Gateway 12.8 SP4 and later has built-in support for CVE-2020-1938 " (Ghostcat vulnerability) " vulnerability
search cancel

Symantec Access Gateway 12.8 SP4 and later has built-in support for CVE-2020-1938 " (Ghostcat vulnerability) " vulnerability

book

Article ID: 198435

calendar_today

Updated On:

Products

CA Single Sign On Secure Proxy Server (SiteMinder)

Issue/Introduction

Symantec Access Gateway 12.8 SP4 and later has built-in support for CVE-2020-1938 " (Ghostcat vulnerability) " vulnerability.

Environment

Applies to Symantec Access Gateway 12.8 (fkna Secure Proxy Server) Version 12.8 SP4 and later

Applies to any OS

Resolution

Built-in Support for CVE-2020-1938 Vulnerability Fix:

The CVE-2020-1938 vulnerability (Ghostcat vulnerability) fix that was previously delivered as a patch is now available as a built-in fix from Release 12.8.04. For releases 12.8 through 12.8.03, the fix is available as a patch and must be manually deployed.

https://techdocs.broadcom.com/us/en/symantec-security-software/identity-security/siteminder/12-8/release-notes/New-Features/New-Features-in-12-8-04.html#concept.dita_25df7fc3-60f0-4e01-b135-1118d9f57a65_BuiltinSupportforCVE-2020-1938VulnerabilityFix