Symantec LiveUpdate Administrator (LUA): Vulnerability status for CVE-2022-2097 and CVE-2022-2274
search cancel

Symantec LiveUpdate Administrator (LUA): Vulnerability status for CVE-2022-2097 and CVE-2022-2274

book

Article ID: 248485

calendar_today

Updated On:

Products

Endpoint Protection

Issue/Introduction

This article provides the SEP (LUA) vulnerability status and protection details for OpenSSL vulnerabilities, CVE-2022-2097 and CVE-2022-2274

Environment

SEP (LUA) 2.3.x 

Resolution

CVE-2022-2097: Not vulnerable as SEP (LUA) uses TLS for OpenSSL

CVE-2022-2274: Not vulnerable as the CVE affects only OpenSSL versions 3.0.4, and it is not used by SEP (LUA) (1.0.2u / 1.1.1n) .