The security team for a customer wants to know if Symantec Messaging Gateway (SMG) is vulnerable to CVE-2026-23666 in any supported configuration.
CVE-2026-23666 is a vulnerability identified as improper input validation within the Microsoft .NET Framework that could allow an unauthorized attacker to cause a denial of service (DoS) over a network.
Symantec Messaging Gateway is not vulnerable to CVE-2026-23666.
Symantec Messaging Gateway is a hardened Linux-based appliance. It does not utilize the Microsoft .NET Framework for its core messaging processing, scanner services, or the Control Center management interface. Because the affected software component (.NET Framework) is not present or used within the SMG appliance architecture, the vulnerability cannot be exploited.
No action is required by administrators regarding this specific CVE.