Security scans may detect vulnerability with VIP Enterprise Gateway installed on Linux for 'libcurl' library file
VIP Enterprise Gateway version 9.11 or lower installed on Linux
libcurl.so.4 library needs to be version 8.9.1 or higher to correct vulnerability
Instance Detail:
Path: /opt/Symantec/VIP_Enterprise_Gateway/Validation/bin/libcurl.so.4
Installed version : 7.56.1 (*Note: VIP 9.11.0 version)
Fixed version : 8.9.1
Apply the hotfix attached to this KB article as mentioned in the included instruction file: "VIP_EG_911_BRCMVIP-6794_HotFix_Readme.docx"
The prerequisite for this hot fix is:
Note: This fix was included in VIP Enterprise Gateway version 9.11.1 released February 28, 2025.