Enterprise Security Group Advisory for CVE-2025-8671

ASG-S500

35 more products

36047

18 August 2025

18 August 2025

OPEN

HIGH

Summary

Broadcom's Enterprise Security Group is investigating CVE-2025-8671 "MadeYouReset", which is a vulnerability impacting HTTP/2 implementations. 

Affected Product(s)

No Broadcom Enterprise Security Group products are confirmed affected at this time. 

Additional Product Information

The following products are not vulnerable:

Advanced Secure Gateway (ASG)
BCAAA
Carbon Black App Control Agent
Carbon Black App Control Server
Carbon Black Cloud CWP Appliance
Carbon Black Cloud Platform
Carbon Black Cloud Sensor
Carbon Black Cloud Sensor Gateway
Carbon Black EDR Sensor
Carbon Black EDR Server
CloudSOC Cloud Access Security Broker (CASB)
Cloud Secure Web Gateway (Cloud SWG)
Content Analysis
Critical System Protection (CSP)
Data Center Security (DCS)
Data Loss Prevention (DLP)

Data Loss Prevention Cloud
Edge Secure Web Gateway (SWG)
HSM Agent
Information Centric Analytics (ICA)
Integrated Secure Gateway (ISG)
IT Analytics (ITA)

LiveUpdate Administrator (LUA)
Management Center (MC)
ProxySG

Reporter
SSL Visibility (SSLV)
Symantec Endpoint Detection and Response (EDR) On-premise

Symantec Endpoint Protection (SEP) Agent
Symantec Endpoint Protection Manager (SEPM)
Symantec Endpoint Protection (SEP) for Mobile
Symantec Endpoint Security (SES)

Symantec Insight for Private Clouds
Symantec Mail Security for Microsoft Exchange (SMSMSE)
Symantec Protection Engine (SPE)
Symantec Protection for SharePoint Servers (SPSS)
Threat Defense for Active Directory (TDAD)

Web Isolation (WI) Virtual Machine
Web Isolation (WI) Cloud Native
Zero Trust Network Access (ZTNA)

References

Revisions

2025-08-18 11:00 PT - Initial Release