cancel
Showing results for 
Search instead for 
Did you mean: 

VSE coverage for vulnerabilities CVE-2019-1181 and CVE-2019-1182

Our client runs VSE 8.8 Patch 12 and HIPS 8.0 Patch 12. They want to know if the following two vulnerabilities are covered by the current DAT and HIPS contents update CVE-2019-1181, and CVE-2019-1182 Can you please advise?
3 Replies

Re: VSE coverage for vulnerabilities CVE-2019-1181 and CVE-2019-1182

I am also interested in this; although, I am interested in the same for ENS.

Re: VSE coverage for vulnerabilities CVE-2019-1181 and CVE-2019-1182

IIRC, these CVEs were discovered and disclosed by Microsoft Vulnerability Research teams.

If you can believe Microsoft, then neither of these CVEs are publicly disclosed nor are they currently being exploited in-the-wild (at the time of publication).  See:

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1181

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1182

I doubt McAfee has DAT protection for these non-publicly disclosed or exploited CVEs (yet).

In order to be alerted if/when McAfee DAT coverage for CVEs is available, then sign-up for McAfee's Support Notification Service (SNS), here: https://www.mcafee.com/enterprise/en-us/sns/preferences/sns-form.html

Otherwise, monitor for the CVE info from McAfee here:

https://www.mcafee.com/enterprise/en-us/threat-center/threat-landscape-dashboard/vulnerabilities-det...

https://www.mcafee.com/enterprise/en-us/threat-center/threat-landscape-dashboard/vulnerabilities-det...

For example, here's a recently populated CVE provided by McAfee with related support info:

https://www.mcafee.com/enterprise/en-us/threat-center/threat-landscape-dashboard/vulnerabilities-det...

Hope this info is helpful.

Highlighted

Re: VSE coverage for vulnerabilities CVE-2019-1181 and CVE-2019-1182

Quick update:

McAfee's Threat Intelligence Service originally indicated "No Coverage Status" for DAT FILES for these two CVEs early last week in their "Security Advisory: MTIS19-035"

However, late last Friday, an update was made online here:

https://community.mcafee.com/t5/Documents/McAfee-Labs-Security-Advisory-MTIS19-035/ta-p/632725

Please see the PDF file attachment:

https://community.mcafee.com/t5/Documents/McAfee-Labs-Security-Advisory-MTIS19-035/ta-p/632725?attac...

Status for DAT FILES (for these 2 CVEs) has now changed to "Under analysis".

Please monitor.
More McAfee Tools to Help You
  • Subscription Service Notification (SNS)
  • How-to: Endpoint Removal Tool
  • Support: Endpoint Security
  • eSupport: Policy Orchestrator
  • Community Help Hub

      New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.

    • Find Forum FAQs
    • Learn How to Earn Badges
    • Ask for Help
    Go to Community Help

    Join the Community

      Thousands of customers use the McAfee Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership:

    • Get helpful solutions from McAfee experts.
    • Stay connected to product conversations that matter to you.
    • Participate in product groups led by McAfee employees.
    Join the Community
    Join the Community