PT-2024-15390 · Ta · Ta
Published
2024-01-09
·
Updated
2024-01-12
·
CVE-2024-0213
CVSS v3.1
8.2
High
| Vector | AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
TA for Linux versions prior to 5.8.1
TA for MacOS versions prior to 5.8.1
Description
A buffer overflow vulnerability allows a local user to gain elevated permissions or cause a Denial of Service (DoS) through exploiting a memory corruption issue in the TA service, which runs as root. This may also result in the disabling of event reporting to ePO, caused by failure to validate input from the file correctly.
Recommendations
For TA for Linux versions prior to 5.8.1, update to version 5.8.1 or later to resolve the issue.
For TA for MacOS versions prior to 5.8.1, update to version 5.8.1 or later to resolve the issue.
As a temporary workaround, consider restricting access to the TA service to minimize the risk of exploitation.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ta