Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-0213

Опубликовано: 09 янв. 2024
Источник: nvd
CVSS3: 8.2
CVSS3: 7.8
EPSS Низкий

Описание

A buffer overflow vulnerability in TA for Linux and TA for MacOS prior to 5.8.1 allows a local user to gain elevated permissions, or cause a Denial of Service (DoS), through exploiting a memory corruption issue in the TA service, which runs as root. This may also result in the disabling of event reporting to ePO, caused by failure to validate input from the file correctly.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:trellix:agent:*:*:*:*:linux:*:*:*
Версия до 5.8.1 (исключая)
cpe:2.3:a:trellix:agent:*:*:*:*:macos:*:*:*
Версия до 5.8.1 (исключая)

EPSS

Процентиль: 26%
0.00089
Низкий

8.2 High

CVSS3

7.8 High

CVSS3

Дефекты

CWE-120
CWE-120

Связанные уязвимости

CVSS3: 8.2
github
около 2 лет назад

A buffer overflow vulnerability in TA for Linux and TA for MacOS prior to 5.8.1 allows a local user to gain elevated permissions, or cause a Denial of Service (DoS), through exploiting a memory corruption issue in the TA service, which runs as root. This may also result in the disabling of event reporting to ePO, caused by failure to validate input from the file correctly.

EPSS

Процентиль: 26%
0.00089
Низкий

8.2 High

CVSS3

7.8 High

CVSS3

Дефекты

CWE-120
CWE-120