A buffer overflow vulnerability in TA for Linux and TA for MacOS prior to 5.8.1 allows a local user to gain elevated permissions, or cause a Denial of Service (DoS), through exploiting a memory corruption issue in the TA service, which runs as root. This may also result in the disabling of event reporting to ePO, caused by failure to validate input from the file correctly.
References
Link | Resource |
---|---|
https://kcm.trellix.com/corporate/index?page=content&id=SB10416 | Patch Vendor Advisory |
https://kcm.trellix.com/corporate/index?page=content&id=SB10416 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 08:46
Type | Values Removed | Values Added |
---|---|---|
References | () https://kcm.trellix.com/corporate/index?page=content&id=SB10416 - Patch, Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.2 |
12 Jan 2024, 19:27
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-120 | |
First Time |
Trellix
Trellix agent |
|
References | () https://kcm.trellix.com/corporate/index?page=content&id=SB10416 - Patch, Vendor Advisory | |
CPE | cpe:2.3:a:trellix:agent:*:*:*:*:macos:*:*:* cpe:2.3:a:trellix:agent:*:*:*:*:linux:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
09 Jan 2024, 14:55
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-09 14:15
Updated : 2024-11-21 08:46
NVD link : CVE-2024-0213
Mitre link : CVE-2024-0213
CVE.ORG link : CVE-2024-0213
JSON object : View
Products Affected
trellix
- agent
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')