> Source: [sk182694](https://support.checkpoint.com/results/sk/sk182694)

# sk182694 - Enterprise Endpoint Security Hotfixes for E88.x Windows Clients Releases

| Property | Value |
|----------|-------|
| Solution ID | sk182694 |
| Date Created | 2024-09-18 |
| Last Modified | 2026-07-15 |
| Technical Level | General |
| Products | Endpoint Security |
| Versions | E88.X |
| OS | Windows |

## Solution

**Introduction \| Hotfix Installation Instructions \| List of Resolved Issues**

Introduction {#Introduction}
----------------------------

The endpoint client hotfix mechanism involves a compact set of binary and configuration files that replace the currently installed files. Each hotfix contains only critical, low-risk changes.  

Hotfixes are automatically applied to all machines with access to the Check Point CDN or a management server that includes the hotfix. They are safe to apply on any client version for both 32-bit and 64-bit operating systems. Hotfixes only apply if changes are required and will replace only the tested files (changes to custom builds will not be applied).  

The endpoint client periodically checks for available hotfixes. If a new hotfix is detected, it is automatically retrieved from the CDN and applied. The hotfixes can be found at this CDN root: <https://ep-repo.epmgmt.checkpoint.com/epupdates/>.  

You can check the status of installed hotfixes in the "Installed Patch" column on the asset management page. Each endpoint may have multiple hotfixes installed, but typically, each new hotfix includes all previously released updates.

Hotfix Installation Instructions {#Installation}
------------------------------------------------

Show / Hide this Section  
Installing a hotfix on a client that is not connected to the internet can be done in two ways:

### 1. Install the hotfix on an on-prem management server {#Toggle_Installation}

Uploading the hotfix to the on-premises Endpoint Server will prompt all connected client machines to download and install it. By default, this process takes approximately four hours.  

1. Download the `.tgz` archive relevant to your version under the "Package for isolated on-premises environment" column from the downloads table in this page
2. Upload the `.tgz` file to the server:
   1. Open connection to the server you wish to change (use winscp or other app).
   2. Copy the `.tgz` file to any location on the Endpoint Security Server.
   3. Run the following command: `tar -xf <downloaded.tgz> && cd <versionHF> && chmod +x serverconfig.sh && ./serverconfig.sh`
3. Repeat all above steps in all connection point servers in your environment

### 2. Install the hotfix on an offline client

To manual install update on Endpoint machine :  

1. Download the zip file relevant for your version under the "Package for offline clients" column from the downloads table in this page
2. Extract the DLL from the downloaded zip file
3. Run command prompt with administrator privileges
4. On the command prompt console run the following command line:
   * For 64 bit : `"C:\Program Files (x86)\CheckPoint\Endpoint Security\Endpoint Common\bin\EP_CDT.exe" <full path to downloaded dll> <uninstall password>`
   * For 32 bit `"C:\Program Files\CheckPoint\Endpoint Security\Endpoint Common\bin\EP_CDT.exe" <full path to downloaded dll> <uninstall password>`

List of Resolved Issues {#Resolved Issues}
------------------------------------------

### E88.72 {#Secure Workspace}

Show / Hide section  

|------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------|------------------|------------------|
| ID         | Description                                                                                                                                                         | Hotfix ID        | Fixed In Version |
| EPS-63819  | A one-time script disables hibernation on systems with Full Disk Encryption (FDE) installed to prevent potential EFI System Partition (ESP) file system corruption. | E88_72_868872004 | E89.25           |
| ESVPN-4785 | Stability improvement.                                                                                                                                              | E88_72_868872003 | E89.20           |

{#limitations-Table}   

|--------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
| **Package for isolated on-premises environment**                                                                         | **Package for offline clients**                                                                                          |
| [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/144196) (TGZ) | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/144197) (DLL) |

### E88.70 {#Secure Workspace}

Show / Hide section  

|------------|----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|------------------|------------------|
| ID         | Description                                                                                                                                                                      | Hotfix ID        | Fixed In Version |
| AHTP-32738 | Improved Anti-Malware Scan Interface (AMSI) mechanism stability.                                                                                                                 | E88_70_868870003 | E88.72           |
| AHTP-32800 | After an upgrade to E88.70, the *CPFileAnlyz* process exits unexpectedly, causing the Anti-Malware and Threat Emulation Blades to crash.                                         | E88_70_868870003 | E88.72           |
| EPS-58865  | A memory leak in *IDAFServerHostService.exe* occurs after the CPDA process exits during periods of high network activity, resulting in DAF memory consumption increasing to 1GB. | E88_70_868870003 | E88.72           |
| EPS-59382  | Some applications such as Microsoft Office may crash or be unresponsive when an Endpoint Security add-on is installed.                                                           | E88_70_868870003 | E88.72           |

{#limitations-Table}   

|--------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
| **Package for isolated on-premises environment**                                                                         | **Package for offline clients**                                                                                          |
| [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/137257) (TGZ) | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/137258) (DLL) |

### E88.61 {#Secure Workspace}

Show / Hide section  

|-----------|---------------------------------------------------------------------------------|------------------|------------------|
| ID        | Description                                                                     | Hotfix ID        | Fixed In Version |
| EPS-59270 | Windows updates fail with the "*Error 80070005*" because of a permission issue. | E88_61_868861007 | E88.62           |

{#limitations-Table}   

|--------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
| **Package for isolated on-premises environment**                                                                         | **Package for offline clients**                                                                                          |
| [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/136372) (TGZ) | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/136373) (DLL) |

### E88.60 {#Secure Workspace}

Show / Hide section  

|------------|-----------------------------------------------------------------------------------------|------------------|------------------|
| ID         | Description                                                                             | Hotfix ID        | Fixed In Version |
| EPS-59270  | Windows updates fail with the "Error 80070005" because of a permission issue.           | E88_60_868860007 | E88.62           |
| AHTP-31503 | The *C:\\Windows\\cpepmon.mlf* file is not created if Forensics blade is not installed. | E88_60_868860001 | E88.61           |

{#limitations-Table}   

|--------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
| **Package for isolated on-premises environment**                                                                         | **Package for offline clients**                                                                                          |
| [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/136547) (TGZ) | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/136549) (DLL) |

### E88.50 {#Secure Workspace}

Show / Hide section  

|------------|-----------------------------------------------------------------------------------------|------------------|------------------|
| ID         | Description                                                                             | Hotfix ID        | Fixed In Version |
| EPS-59270  | Windows updates fail with the "Error 80070005" because of a permission issue.           | E88_50_868850006 | E88.62           |
| AHTP-31503 | The *C:\\Windows\\cpepmon.mlf* file is not created if Forensics blade is not installed. | E88_50_868850001 | E88.61           |

{#limitations-Table}   

|--------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
| **Package for isolated on-premises environment**                                                                         | **Package for offline clients**                                                                                          |
| [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/136546) (TGZ) | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/136548) (DLL) |

### E88.41 {#Compliance Scanner}

Show / Hide section  

|------------|------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|------------------|------------------|
| ID         | Description                                                                                                                                                                                                                  | Hotfix ID        | Fixed In Version |
| EPS-57756  | Fixed upload cpinfo to Check Point servers through Push Operation.                                                                                                                                                           | E88_41_868841002 | E88.50           |
| AHTP-31503 | The*C:\\Windows\\cpepmon.mlf* file is not created if Forensics blade is not installed.                                                                                                                                       | E88_41_868841002 | E88.61           |
| EPS-57575  | Launching SmartConsole from Smart-1 Cloud portal or signing in with the Harmony SASE agent fails after Endpoint Security Clients upgrade to E88.41. Refer to [sk182532](https://support.checkpoint.com/results/sk/sk182651). | E88_41_868841002 | E88.50           |

{#limitations-Table}   

|--------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
| **Package for isolated on-premises environment**                                                                         | **Package for offline clients**                                                                                          |
| [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/135135) (TGZ) | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/135136) (DLL) |

### E88.32

Show / Hide section  

|------------|----------------------------------------------------------------------------------------|------------------|------------------|
| ID         | Description                                                                            | Hotfix ID        | Fixed In Version |
| EPS-57756  | Fixed upload cpinfo to Check Point servers through Push Operation.                     | E88_32_868832004 | E88.50           |
| AHTP-31503 | The*C:\\Windows\\cpepmon.mlf* file is not created if Forensics blade is not installed. | E88_32_868832004 | E88.61           |

{#limitations-Table}   

|--------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
| **Package for isolated on-premises environment**                                                                         | **Package for offline clients**                                                                                          |
| [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/135133) (TGZ) | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/135134) (DLL) |

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
