CVE-2012-3582: Symantec Pgp Universal Server
Low severity, CVSS 2.9. EPSS: 0.6% chance of exploitation in the next 30 days.
Symantec PGP Universal Server 3.2.x before 3.2.1 MP2 does not properly manage sessions that include key search requests, which might allow remote attackers to read a private key in opportunistic circumstances by making a request near the end of a user's session.
Affected products
- Symantec Pgp Universal Server: version 3.2.0 only; version 3.2.1 only
Published 2012-09-04. Last modified 2026-06-16.