Description
Specially crafted string can cause a buffer overrun in the JSON parser library leading to a crash of the Zabbix Server or a Zabbix Proxy.
Published: 2023-07-13
Score: 4.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-3538-1 zabbix security update
EUVD EUVD EUVD-2023-33020 Specially crafted string can cause a buffer overrun in the JSON parser library leading to a crash of the Zabbix Server or a Zabbix Proxy.
History

Tue, 22 Oct 2024 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Zabbix

Published:

Updated: 2025-02-13T16:49:18.150Z

Reserved: 2023-04-06T18:04:44.891Z

Link: CVE-2023-29451

cve-icon Vulnrichment

Updated: 2024-08-02T14:07:46.279Z

cve-icon NVD

Status : Modified

Published: 2023-07-13T10:15:09.137

Modified: 2024-11-21T07:57:04.990

Link: CVE-2023-29451

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses