Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-45700

Опубликовано: 02 апр. 2025
Источник: debian
EPSS Низкий

Описание

Zabbix server is vulnerable to a DoS vulnerability due to uncontrolled resource exhaustion. An attacker can send specially crafted requests to the server, which will cause the server to allocate an excessive amount of memory and perform CPU-intensive decompression operations, ultimately leading to a service crash.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zabbixfixed1:7.0.10+dfsg-1package
zabbixno-dsabookwormpackage

Примечания

  • https://support.zabbix.com/browse/ZBX-26253

  • Fixed by (merge commit): https://github.com/zabbix/zabbix/commit/c0757920b12922eaafca2abe7318446b5c5fefaa (7.0.10rc1)

  • Fixed by (merge commit): https://github.com/zabbix/zabbix/commit/f3d13f079d9e8764b407876f50fde2f06088ea0d (6.0.39rc1)

EPSS

Процентиль: 27%
0.00348
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 1 года назад

Zabbix server is vulnerable to a DoS vulnerability due to uncontrolled resource exhaustion. An attacker can send specially crafted requests to the server, which will cause the server to allocate an excessive amount of memory and perform CPU-intensive decompression operations, ultimately leading to a service crash.

CVSS3: 6.5
nvd
больше 1 года назад

Zabbix server is vulnerable to a DoS vulnerability due to uncontrolled resource exhaustion. An attacker can send specially crafted requests to the server, which will cause the server to allocate an excessive amount of memory and perform CPU-intensive decompression operations, ultimately leading to a service crash.

CVSS3: 6.5
github
больше 1 года назад

Zabbix server is vulnerable to a DoS vulnerability due to uncontrolled resource exhaustion. An attacker can send specially crafted requests to the server, which will cause the server to allocate an excessive amount of memory and perform CPU-intensive decompression operations, ultimately leading to a service crash.

CVSS3: 6.5
fstec
больше 1 года назад

Уязвимость сервера универсальной системы мониторинга Zabbix, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
redos
около 1 года назад

Уязвимость zabbix7.2-server-pgsql

EPSS

Процентиль: 27%
0.00348
Низкий