Lucene search

K
cvelistTrellixCVELIST:CVE-2024-0213
HistoryJan 09, 2024 - 1:01 p.m.

CVE-2024-0213

2024-01-0913:01:13
CWE-120
trellix
www.cve.org
3
buffer overflow
linux
macos
elevated permissions
denial of service
memory corruption
root
event reporting
epo validation

CVSS3

8.2

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H

EPSS

0

Percentile

5.1%

A buffer overflow vulnerability in TA for Linux and TA for MacOS prior to 5.8.1 allows a local user to gain elevated permissions, or cause a Denial of Service (DoS), through exploiting a memory corruption issue in the TA service, which runs as root. This may also result in the disabling of event reporting to ePO, caused by failure to validate input from the file correctly.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "Trellix Agent (TA)",
    "vendor": "Trellix",
    "versions": [
      {
        "status": "affected",
        "version": "Prior to 5.8.1"
      }
    ]
  }
]

CVSS3

8.2

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H

EPSS

0

Percentile

5.1%

Related for CVELIST:CVE-2024-0213