PT-2011-4353 · Zabbix · Zabbix
Dimir
·
Published
2011-08-19
·
Updated
2017-08-29
·
CVE-2011-3263
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Zabbix versions prior to 1.8.6
Zabbix versions 1.9.x prior to 1.9.4
Description
The issue allows context-dependent attackers to cause a denial of service by consuming CPU resources. This can be achieved by executing the vfs.file.cksum command for a special device, such as the /dev/urandom device.
Recommendations
For Zabbix versions prior to 1.8.6, update to version 1.8.6 or later.
For Zabbix versions 1.9.x prior to 1.9.4, update to version 1.9.4 or later.
Exploit
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Zabbix