QID 378616

Date Published: 2023-07-06

QID 378616: Trellix (McAfee) Agent Multiple Vulnerabilities (SB10396)

The Trellix Agent is the distributed component of Trellix ePolicy Orchestrator. It downloads and enforces policies, and executes client-side tasks such as deployment and updating. The Agent also uploads events and provides additional data regarding each system status.

CVE-2023-0975 Improper Preservation of Permissions:

CVE-2023-0977 Heap based overflow

Affected versions:
McAfee Agent Prior to 5.7.9

Successful exploitation could allow the user to elevate their permissions.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 6.8 severity.
  • Solution
    Install or update to McAfee Agent 5.7.9 For more details refer v

    CVEs related to QID 378616

    Software Advisories
    Advisory ID Software Component Link
    SB10396 URL Logo kcm.trellix.com/corporate/index?page=content&id=SB10396