Critical Patches for Trend Micro Deep Discovery Inspector (DDI) version 6.5/6.6 EN that addresses 3rd-party php component vulnerabilities have officially been released and the packages are available on Trend Micro's download center.
For the detail, refer to the SECURITY BULLETIN: Trend Micro Deep Discovery Inspector 6.x and CVE-2023-3823/3824.
Recommended Action
- Customers who use DDI 6.5 or 6.6 are encouraged to apply this critical patch as early as possible.
Note: For customers who are using DDI 6.5, apply DDI 6.5 Patch1 (B1145) first, then apply this critical patch. - Customers who use previous versions of DDI (before version 6.5) are encouraged to upgrade DDI to the latest version first. Then apply the critical patch.
For the migration path, refer to the Knowledge Base article: Deep Discovery Inspector (DDI) Software Upgrade Path.
If this is not possible, contact Trend Micro Technical Support for additional assistance.
For support assistance, please contact Trend Micro Technical Support.