Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-42328

Опубликовано: 27 нояб. 2024
Источник: nvd
CVSS3: 3.3
CVSS3: 5.5
EPSS Низкий

Описание

When the webdriver for the Browser object downloads data from a HTTP server, the data pointer is set to NULL and is allocated only in curl_write_cb when receiving data. If the server's response is an empty document, then wd->data in the code below will remain NULL and an attempt to read from it will result in a crash.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*
Версия от 7.0.0 (включая) до 7.0.4 (исключая)

EPSS

Процентиль: 11%
0.00038
Низкий

3.3 Low

CVSS3

5.5 Medium

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 3.3
ubuntu
11 месяцев назад

When the webdriver for the Browser object downloads data from a HTTP server, the data pointer is set to NULL and is allocated only in curl_write_cb when receiving data. If the server's response is an empty document, then wd->data in the code below will remain NULL and an attempt to read from it will result in a crash.

CVSS3: 3.3
debian
11 месяцев назад

When the webdriver for the Browser object downloads data from a HTTP s ...

CVSS3: 3.3
github
11 месяцев назад

When the webdriver for the Browser object downloads data from a HTTP server, the data pointer is set to NULL and is allocated only in curl_write_cb when receiving data. If the server's response is an empty document, then wd->data in the code below will remain NULL and an attempt to read from it will result in a crash.

CVSS3: 3.3
fstec
11 месяцев назад

Уязвимость функции curl_write_cb() универсальной системы мониторинга Zabbix, позволяющая нарушителю вызвать отказ в обслуживании (DoS)

CVSS3: 8.8
redos
11 месяцев назад

Множественные уязвимости zabbix7-lts-server-pgsql

EPSS

Процентиль: 11%
0.00038
Низкий

3.3 Low

CVSS3

5.5 Medium

CVSS3

Дефекты

CWE-476