If Defender was also kicked out, it would have been fine, but it wasn't.
Using a monopoly in one industry to capture the market in another industry is what anti monopoly laws are meant to prevent.
Microsoft was prevented because they wanted to retain a commercial business in their security products having special access while locking out everyone else.
The EU didn't say that Microsoft couldn't kick vendors out of the kernel, just that they couldn't do so without having the APIs available that would let security vendors operate outside the kernel.
Mac and Linux have such APIs, so CrowdStrike operates in user-mode on those platforms, so those platforms do not give security vendors the ability to crash the operating system.
Microsoft could have come up with a kernel API that their own malware (and everyone elses) product could make use of. They did not.