QID 378616
Date Published: 2023-07-06
QID 378616: Trellix (McAfee) Agent Multiple Vulnerabilities (SB10396)
The Trellix Agent is the distributed component of Trellix ePolicy Orchestrator. It downloads and enforces policies, and executes client-side tasks such as deployment and updating. The Agent also uploads events and provides additional data regarding each system status.
CVE-2023-0975 Improper Preservation of Permissions:
CVE-2023-0977 Heap based overflow
Affected versions:
McAfee Agent Prior to 5.7.9
Successful exploitation could allow the user to elevate their permissions.
Solution
Install or update to McAfee Agent 5.7.9 For more details refer
v
Vendor References
CVEs related to QID 378616
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| SB10396 |
|