Is SPE vulnerable to CVE-2022-38023?
search cancel

Is SPE vulnerable to CVE-2022-38023?

book

Article ID: 269925

calendar_today

Updated On:

Products

Protection Engine for NAS Protection Engine for Cloud Services

Issue/Introduction

You request to know if the Symantec Protection Engine (SPE) is vulnerable to CVE-2022-38023.

Environment

Release : 8.2.2

Resolution

Public facing statement:

"The Symantec Protection Engine (SPE) is not dependent on the NetLogon service directly and is therefore not impacted by CVE-2022-38023.  Broadcom strongly recommends customers patch their systems according to Microsoft documentation (reference the link below)."

https://support.microsoft.com/en-us/topic/kb5021130-how-to-manage-the-netlogon-protocol-changes-related-to-cve-2022-38023-46ea3067-3989-4d40-963c-680fd9e8ee25