Beveiligingsadvies

CVE-2024-32038

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-04-19 14:31:00
Laatst bijgewerkt 2024-08-02 02:06:42
Toegewezen door GitHub_M
CVSS-score 9.8
Status PUBLISHED

Beschrijving

Wazuh is a free and open source platform used for threat prevention, detection, and response. There is a buffer overflow hazard in wazuh-analysisd when handling Unicode characters from Windows Eventchannel messages. It impacts Wazuh Manager 3.8.0 and above. This vulnerability is fixed in Wazuh Manager 4.7.2.