Is Symantec DLP vulnerable to CVE-2026-11856
search cancel

Is Symantec DLP vulnerable to CVE-2026-11856

book

Article ID: 450149

calendar_today

Updated On:

Products

Data Loss Prevention Core Package Data Loss Prevention Endpoint Prevent Data Loss Prevention Enforce Data Loss Prevention Enterprise Suite Data Loss Prevention Network Discover Data Loss Prevention Network Monitor and Prevent for Email Data Loss Prevention Network Monitor and Prevent for Email and Web Data Loss Prevention Network Monitor and Prevent for Web Data Loss Prevention Network Prevent for Email Data Loss Prevention Network Protect Data Loss Prevention Network Prevent for Web Virtual Appliance Data Loss Prevention Network Prevent for Email Virtual Appliance Data Loss Prevention Network Monitor Data Loss Prevention

Issue/Introduction

An issue in libcurl's Digest authentication mechanism where certain headers were not properly cleared or validated during authentication retries, potentially leading to credential exposure in specific configurations.

 

Resolution

The Symantec Data Loss Prevention Suite (DLP Agents and DLP Servers) does not use Digest authentication; CURLAUTH_DIGEST is never set.