Wazuh Manager in Wazuh through 4.1.5 is affected by a remote Integer Underflow vulnerability that might lead to denial of service. A crafted message must be sent from an authenticated agent to the manager.
References
Link | Resource |
---|---|
https://documentation.wazuh.com/current/release-notes/release_4_2_0.html | Release Notes Vendor Advisory |
https://github.com/wazuh/wazuh/issues/9201 | Exploit Issue Tracking Third Party Advisory |
Configurations
History
12 Oct 2021, 15:37
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-191 | |
CPE | cpe:2.3:a:wazuh:wazuh:*:*:*:*:*:*:*:* | |
References | (MISC) https://github.com/wazuh/wazuh/issues/9201 - Exploit, Issue Tracking, Third Party Advisory | |
References | (MISC) https://documentation.wazuh.com/current/release-notes/release_4_2_0.html - Release Notes, Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : 4.0
v3 : 6.5 |
29 Sep 2021, 23:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-09-29 23:15
Updated : 2024-02-04 22:08
NVD link : CVE-2021-41821
Mitre link : CVE-2021-41821
CVE.ORG link : CVE-2021-41821
JSON object : View
Products Affected
wazuh
- wazuh
CWE
CWE-191
Integer Underflow (Wrap or Wraparound)