Impact of libcurl related vulnerabilities on Endpoint Protection Linux agent
search cancel

Impact of libcurl related vulnerabilities on Endpoint Protection Linux agent

book

Article ID: 275959

calendar_today

Updated On:

Products

Endpoint Protection

Issue/Introduction

You want to know if Symantec Endpoint Protection agent installed on Linux (SEP/SES/SAL) is impacted by these libcurl related vulnerabilities:

  • CVE-2023-38545
  • CVE-2023-38546
  • CVE-2026-12064
  • CVE-2026-11856
  • CVE-2026-10536
  • CVE-2026-9545
  • CVE-2026-9547
  • CVE-2026-9079
  • CVE-2026-9080
  • CVE-2026-8924
  • CVE-2026-8926
  • CVE-2026-8927
  • CVE-2026-8932
  • CVE-2026-8458
  • CVE-2026-8286

Different paths where libcurl library can be found on Linux agent:
/opt/Symantec/cafagent/lib/
/opt/Symantec/sdcssagent/IPS/bin/
/opt/Symantec/sdcssagent/sharedlib/

Environment

SEP 14.3 RU9 Linux

Resolution

CVE-2023-38545/CVE-2023-38546 is fixed in libcurl version 8.4.0.
All others CVEs above are fixed in libcurl version 8.21.0.

The latest SEP 14.3 RU9 Linux installer includes curl version 8.21. So, there is no impact of these CVEs.

It is recommended to upgrade to the latest build to mitigate any potential impact.