1. Overview of This Critical Patch Release

Issues

This Critical Patch resolves the following issue(s):

Issue 1

Deep Discovery Inspector is affected by the following vulnerabilities:

  • ZDI-CAN-24584
  • ZDI-CAN-24585

Solution

This critical patch fixes the vulnerabilities.

Files Included in This Release

There are no files included in this Critical Patch release.

2. Documentation Set

To download or view electronic versions of the documentation set for this product, go to http://docs.trendmicro.com

  • Online Help: The Online Help contains an overview of features and key concepts, and information on configuring and maintaining the product.


To access the Online Help, go to http://docs.trendmicro.com

  • Installation Guide (IG): The Installation Guide contains information on requirements and procedures for installing and deploying the product.
  • Administrator's Guide (AG): The Administrator's Guide contains an overview of features and key concepts, and information on configuring and maintaining the product.
  • Getting Started Guide (GSG): The Getting Started Guide contains product overview, installation planning, installation and configuration instructions, and basic information intended to get the product 'up and running'.
  • Support Portal: The Support Portal contains information on troubleshooting and resolving known issues.
  • To access the Support Portal, go to http://success.trendmicro.com

3. System Requirements

1. Deep Discovery Inspector 6.6 GM Build 1078 - English - Linux - x64

4. Installation

Installing

  1. Open the Deep Discovery Inspector web console.
  2. Go to Administration > Updates > Product Updates > Hot Fixes / Patches.
  3. Under Install Hot Fix / Patch, click "Browse" to select the "" file from the folder where you extracted the hotfix files.
  4. Click "Install".
  5. Click "Continue" after the upload process finished.
  6. Clear the browser cache.

Uninstalling

  1. Open the Deep Discovery Inspector web console.
  2. Go to Administration > Updates > Product Updates > Hot Fixes / Patches.
  3. Under History, click "Roll Back".
  4. Click "OK" when a confirmation message appears.

5. Post-installation Configuration

No post-installation steps are required.

NOTE: Trend Micro recommends updating the scan engine and virus pattern files immediately after installing the product.

6. Known Issues

There are no known issues for this Critical Patch release.

7. Release History

Prior Hotfixes

Only this Critical Patch was tested for this release. Prior hotfixes were tested at the time of their release.
Issue Hotfix 1096

Deep Discovery Inspector tries to download a Certificate Revocation List (CRL) from crl.xrampsecurity.com.

This action should only happen when Deep Discovery Inspector is deployed in inline mode.

Solution

This hotfix ensures that Deep Discovery Inspector downloads the Certificate Revocation List only when deployed in inline mode.

Issue Hotfix 1095

Deep Discovery Inspector is affected by the CVE-2024-6387 and CVE-2024-6409 vulnerabilities.

Solution

This Hotfix resolves these vulnerabilities.

Issue Hotfix 1094

Under certain circumstances, Deep Discovery Inspector restarts unexpectedly.

Solution

This hotfix updates Network Content Inspection Engine to resolve this issue.

Issue Hotfix 1094

Under certain circumstances, Deep Discovery Inspector restarts unexpectedly.

Solution

This hotfix updates Network Content Inspection Engine to resolve this issue.

Issue Hotfix 1093

Deep Discovery Inspector is affected by CVE-2022-31629.

Solution

This hotfix resolves this issue.

Issue Hotfix 1092

The following vulnerabilities affect Deep Discovery Inspector:

  • CVE-2024-24795
  • CVE-2023-38709

Solution

This hotfix upgrade the Apache version included with Deep Discovery Inspector to fix the vulnerabilities.

Issue Hotfix 1088

Deep Discovery Inspector cannot download and install updates due to a page timeout in the Administration > Updates > Product Updates > Service Packs / Version Upgrade screen.

Solution

This hotfix resolves this issue.

Issue Hotfix 1087

Deep Discovery Inspector is affected by a CVE-2023-5363 vulnerability.

Solution

This Hotfix resolves this vulnerability.

Issue Hotfix 1084

When Deep Discovery Inspector is deployed in a virtual environment, the management console may not be able to display the Network Interface screen properly.

Solution

This Hotfix resolves this issue.

Issue Critical Patch 1080

The vulnerability CVE-2023-3823 affects Deep Discovery Inspector 6.6.

Solution

This critical patch resolves the vulnerability.

Issue Critical Patch 1080

The vulnerability CVE-2023-3824 affects Deep Discovery Inspector 6.6.

Solution

This critical patch resolves the vulnerability.

8. Contact Information

A license to Trend Micro software usually includes the right to product updates, pattern file updates, and basic technical support for one (1) year from the date of purchase only. After the first year, you must renew Maintenance on an annual basis at Trend Micro's then-current Maintenance fees.

Contact Trend Micro via fax, phone, and email, or visit our website to download evaluation copies of Trend Micro products.

https://www.trendmicro.com/en_us/contact.html

NOTE: This information is subject to change without notice.

9. About Trend Micro

Smart, simple, security that fits.

As a global leader in IT security, Trend Micro develops innovative security solutions that make the world safe for businesses and consumers to exchange digital information.

Copyright 2024, Trend Micro Incorporated. All rights reserved.

Trend Micro, the t-ball logo, OfficeScan, Trend Micro Security (for Mac), Control Manager, Trend Micro Apex One, and Trend Micro Apex Central are trademarks of Trend Micro Incorporated and are registered in some jurisdictions. All other product or company names may be trademarks or registered trademarks of their owners.

10. License Agreement

View information about your license agreement with Trend Micro at: https://www.trendmicro.com/en_us/about/legal.html

Third-party licensing agreements can be viewed:

  • By selecting the "About" option in the application user interface
  • By referring to the "Legal" page of the Administrator's Guide
Back to Top