Quantcast
Channel: Symantec Connect - Products - Ideas
Viewing all articles
Browse latest Browse all 1891

Microsoft Workaround for CVE-2020-0674 Breaks Host Integrity Checking

$
0
0

CVE-2020-0674 (Internet Explorer Scripting Engine Memory Corruption Vulnerability) does not yet have a patch available from Microsoft. In the interim, they have published a workaround:

https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/ADV200001

We have determined that running the cacls commands in the workaround has the result that SEP Host Integrity checks start failing (status on clients is "Fail to execute Host Integrity check").

We can only assume that Host Integrity checks are using jscript.dll, and SEP no longer has the ability to use it.

We can implement our own workaround by tweaking the Microsoft advice, but a more robust solution would be for the SEP client to do as later versions of Internet Explorer have done, and start using jscript9.dll instead of jscript.dll.

Microsoft will inevitably develop a patch for jscript.dll in time, and so I doubt this will be a high-priority fix for Symantec, but it would be worth considering using the latest Windows libraries in the SEP client product to avoid similar issues in the future.


Viewing all articles
Browse latest Browse all 1891

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>