Endpoint Protection

 View Only
  • 1.  If Symantec endpoint Protection is vulnerable to CVE-2022-37969

    Posted Sep 14, 2022 03:35 AM
    Hello Broadcom Team , 

    Request to help us check whether SEP has protection on MS Windows Common Log File System Driver Elevation of Privilege Vulnerability or not. 

    CVE-2022-37969

    Reference:
    https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37969


    Best Regards,
    Mrunal Bhatt


  • 2.  RE: If Symantec endpoint Protection is vulnerable to CVE-2022-37969

    Posted Sep 15, 2022 05:34 AM
    Hello Team , 

    Any update ? By any chance can this issue be checked ? 

    Best Regards, 
    Mrunal Bhatt


  • 3.  RE: If Symantec endpoint Protection is vulnerable to CVE-2022-37969

    Broadcom Employee
    Posted Sep 15, 2022 11:19 AM
    Symantec is monitoring for potential IOCs. No guidance has been shared via the Microsoft Active Protections Program (MAPP) for CVE-2022-37969 and there are no proof of concept, guidance and samples known to the public. So SEP currently has no detection signatures/definitions for this.