CVE-2024-36468

CVSS V2 None CVSS V3 None
Description
The reported vulnerability is a stack buffer overflow in the zbx_snmp_cache_handle_engineid function within the Zabbix server/proxy code. This issue occurs when copying data from session->securityEngineID to local_record.engineid without proper bounds checking.
Overview
  • CVE ID
  • CVE-2024-36468
  • Assigner
  • Zabbix
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-11-27T12:03:07.626Z
  • Last Modified Date
  • 2024-11-27T14:57:32.411Z
References
Reference URL Reference Tags
https://support.zabbix.com/browse/ZBX-25621
History
Created Old Value New Value Data Type Notes
2024-11-28 13:22:05 Added to TrackCVE