SB2019011111 - Security restrictions bypass in Symantec Norton App Lock
Published: January 11, 2019
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Security restrictions bypass (CVE-ID: CVE-2018-18363)
The vulnerability allows a physical high-privileged attacker to bypass security restrictions on the target system.
The vulnerability exists due to improper privileges and access control. A physical attacker can circumvent the app to prevent it from locking the device and gain device access.
Remediation
Install update from vendor's website.