The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

October 1, 2026 release

Prev Next

This Trellix Endpoint Detection and Response (On-premises) release includes new features, enhancements, and resolved issues for Windows version 4.2.3 endpoints.

Release details

Component

Version

Trellix EDR Client for Windows

4.2.3.6356

Trellix EDR Client Extension

4.2.2.3

Trellix EDR Rules for Windows

4.2.3.6356

New or changed

  • Installation checks for the EDR with Forensics Client

    The installer for the Trellix EDR Client for Windows checks whether the Trellix EDR with Forensics (EDRF) Client is installed on the endpoint. If the Trellix EDRF Client is detected, the installation stops automatically.

  • Use FIPS 140-3-compliant OpenSSL libraries on Windows

    Trellix EDR Client for Windows now supports FIPS 140-3 standards. The Trellix EDR Client for Windows upgrades its OpenSSL libraries to version 3.1.2 when operating in FIPS mode and to version 3.5.6 in non-FIPS mode.

Resolved issues

Reference

Resolution

SEC-212605

Resolves an issue that caused system crashes after installing Windows update KB5077241.

SEC-202833

Resolves an issue where deep API inspection caused the Windows DHCP service (svchost.exe) to crash due to an invalid handle reference.

SEC-213041

Resolves an issue where Trellix EDR Client caused system crashes on multi-node NUMA servers due to legacy CPU affinity API restrictions.

SEC-215713

Resolves an issue where software installations failed when Trellix EDR Trace prevented file deletion for active applications.

SEC-215098

Resolves an issue where Trellix EDR Client failed to send trace events due to JSON parsing errors from malformed DNS telemetry payloads.

SEC-200077

Resolves an issue where Google Chrome failed to update on Windows servers when Trellix EDR Trace held temporary file locks during scanning.

SEC-202653

Resolves an issue where the Trellix EDR Trace plugin caused third-party applications to freeze during execution.

SEC-191721

Resolves an issue where process exclusions using environment variables failed due to system-level path expansion.

SEC-210511

Resolves an issue where running the repair command option caused inconsistent installation behavior.

SEC-210613

Resolves an issue where network quarantine actions reported a Completed with errors status in the Action History dashboard due to DNS resolution timeouts.

Known issues

For a list of known issues in this product release, see KB91275.

Installation information

The Trellix Endpoint Detection and Response Installation Guide provides information for installing the product and migrating from Trellix® Active Response.