Security Advisory

CVE-2024-32038

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-19 14:31:00
Last updated 2024-08-02 02:06:42
Assigner GitHub_M
State PUBLISHED

Description

Wazuh is a free and open source platform used for threat prevention, detection, and response. There is a buffer overflow hazard in wazuh-analysisd when handling Unicode characters from Windows Eventchannel messages. It impacts Wazuh Manager 3.8.0 and above. This vulnerability is fixed in Wazuh Manager 4.7.2.