Does McAfee provide protection against:
Microsoft Windows Remote Desktop Services CVE-2019-0708 Remote Code Execution Vulnerability
“This vulnerability is pre-authentication and requires no user interaction,” Pope said. “In other words, the vulnerability is ‘wormable,’ meaning that any future malware that exploits this vulnerability could propagate from vulnerable computer to vulnerable computer in a similar way as the WannaCry malware spread across the globe in 2017. It is important that affected systems are patched as quickly as possible to prevent such a scenario from happening.”
See:
Solved! Go to Solution.
@RaymondP Microsoft has provided patches for these vulnerabilities. Moving forward with their patch and recommendations is the best solution as it is their OS which is vulnerable, making it their priority to correct. https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0708
Was my reply helpful?
If this information was helpful in any way, or answered your question, will you please select "Accept as Solution" in my reply, or give kudos as appropriate, so together we can help other members?
Please see:
https://community.mcafee.com/t5/Documents/McAfee-Labs-Security-Advisory-MTIS19-018/ta-p/625140
Hello EugeniaLedesma,
Thanks for replying.
I've seen in the PDF, that DAT Files is still under analysis and Host IPS is Out of Scope.
Will there be also a McAfee Security Exploit Prevention Content?
A McAfee Labas Threat Advisory will be very welcome.
Regards,
@RaymondP Microsoft has provided patches for these vulnerabilities. Moving forward with their patch and recommendations is the best solution as it is their OS which is vulnerable, making it their priority to correct. https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0708
Was my reply helpful?
If this information was helpful in any way, or answered your question, will you please select "Accept as Solution" in my reply, or give kudos as appropriate, so together we can help other members?
Do we have McAfee protection against subjected CVE ?
as per McAfee :
COVERED PRODUCTS: Vulnerability Manager
UNDER ANALYSIS: DAT | Web Gateway | Firewall Enterprise.
asper my knowledge, McAfee cant do much on this. HIPs can provide some input
McAfee NSP customers are protected via the following signature released on 5/21/2019:
0x47900c00 “RDP: Microsoft Remote Desktop MS_T120 Channel Bind Attempt”
Corporate Headquarters
6220 America Center Drive
San Jose, CA 95002 USA