Does SCCM 2409 still require patching for CVE-2024-43468?

Hasan 20 Reputation points
2025-02-16T11:39:55.53+00:00

According to this article, there are only patches for the following SCCM builds:

  • 2303
  • 2309
  • 2403

We were hoping by upgrading to 2409 those patches were already included in the upgrade. Upgrading to 2409 went successfully.

When we opened the SCCM console after upgrading to 2409, the Configuration Manager notifications windows appeared.

Schermafdruk_2025-02-09_11-25-55

We clicked on the "More Info" link of the first notification. This redirected us to the article mentioned earlier.

So, does this mean that, despite upgrading to the latest build of SCCM, we still need to install one of the patches mentioned in the article? Or is this a falsely negative notification?

Many thanks in advance for helping us!

Microsoft Configuration Manager
0 comments No comments
{count} votes

Accepted answer
  1. AllenLiu-MSFT 47,971 Reputation points Microsoft Vendor
    2025-02-17T05:52:47.7933333+00:00

    Hi, @Hasan

    Thank you for posting in Microsoft Q&A forum.

    It's obvious, the first notification is created 122 days ago, it's not a new notification after you upgrading to 2409, that hotfix only published to 2303,2309,2403.

    We just need to ignore the old notification.

    User's image


    If the answer is the right solution, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Add comment".

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.