Description
Heap-based buffer overflow in Azure Monitor Agent allows an unauthorized attacker to execute code locally.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:HExploitability: 2.5 | Impact: 4.7Attack Vector: Local
Complexity: Low
Privileges: None
User Interaction: None
Scope: Unchanged
Confidentiality: Low
Integrity: Low
Availability: High
Affected Packages2 packages
🔴Vulnerability Details
2GHSAGHSA-2575-3228-j966: Heap-based buffer overflow in Azure Monitor Agent allows an unauthorized attacker to execute code locally↗2025-11-11 ▶ CVEListAzure Monitor Agent Remote Code Execution Vulnerability↗2025-11-11 ▶ 📋Vendor Advisories
1MicrosoftAzure Monitor Agent Remote Code Execution Vulnerability↗2025-11-11 ▶