CVE-2024-36462Allocation of Resources Without Limits or Throttling in Zabbix

Severity
7.5HIGHNVD
EPSS
0.3%
top 47.03%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 12

Description

Uncontrolled resource consumption refers to a software vulnerability where a attacker or system uses excessive resources, such as CPU, memory, or network bandwidth, without proper limitations or controls. This can cause a denial-of-service (DoS) attack or degrade the performance of the affected system.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages3 packages

Debianzabbix/zabbix< 1:7.0.1+dfsg-1+1
CVEListV5zabbix/zabbix7.0.0alpha17.0.0rc2
NVDzabbix/zabbix7.0.0

🔴Vulnerability Details

3
GHSA
GHSA-q7g5-2mg7-m2r3: Uncontrolled resource consumption refers to a software vulnerability where a attacker or system uses excessive resources, such as CPU, memory, or netw2024-08-12
OSV
CVE-2024-36462: Uncontrolled resource consumption refers to a software vulnerability where a attacker or system uses excessive resources, such as CPU, memory, or netw2024-08-12
CVEList
Allocation of resources without limits or throttling (uncontrolled resource consumption)2024-08-09

📋Vendor Advisories

1
Debian
CVE-2024-36462: zabbix - Uncontrolled resource consumption refers to a software vulnerability where a att...2024