R81.20
This is concerning CVE-2024-24919.
We applied the hotfix last year for this and all the recommended other steps.
We use a third party XDR system, and while going through the events from today, I noticed that it says that my Check Point "did not block" traffic related to CVE-2024-24919.
When I look at my Check Point logs in Smart Log, I can only see two entries at the same exact time:. One is my firewall blade telling me it let this traffic through.
The other entry is telling me my IPS rule for CVE-2024-24919 prevented it.
I'm guessing this traffic was blocked by my IPS, but why would this pacet not be "dropped" at the gateway, or is this just a GUI quirk Check Point?
Thank you!