CVE-2016-5308: Symantec Client Intrusion Detection System
Medium severity, CVSS 5.5. EPSS: 2.4% chance of exploitation in the next 30 days.
The Client Intrusion Detection System (CIDS) driver before 15.0.6 in Symantec Endpoint Protection (SEP) and before 15.1.2 in Norton Security allows remote attackers to cause a denial of service (memory corruption and system crash) via a malformed Portable Executable (PE) file.
Affected products
- Symantec Client Intrusion Detection System: before 15.1.2 (fixed in 15.1.2); before 15.0.6 (fixed in 15.0.6)
Published 2016-07-12. Last modified 2026-06-17.