CVE-2023-2975, CVE-2023-3446, and CVE-2023-3817 OpenSSL vulnerabilities in DLP
search cancel

CVE-2023-2975, CVE-2023-3446, and CVE-2023-3817 OpenSSL vulnerabilities in DLP

book

Article ID: 273190

calendar_today

Updated On:

Products

Data Loss Prevention Endpoint Prevent Data Loss Prevention

Issue/Introduction

Does the CVE-2023-2975, CVE-2023-3446, CVE-2023-3817 OpenSSL vulnerabilities affect Symantec DLP?

Environment

Release: 16.0

Resolution

Neither the Enforce nor Detection servers are impacted by these 3 CVEs.

CVE-2023-2975 - DLP endpoint agent and detection server do not use the affected AES-SIV cipher.
CVE-2023-3446 - DLP endpoint agent and detection server do not use any of the affected functions.
CVE-2023-3817 - DLP endpoint agent and endpoint server do not use any of the affected functions.