PT-2024-2105 · Ibm · Ibm Qradar Siem On Azure Cloud

Wei

·

Published

2024-03-12

·

Updated

2024-11-29

·

CVE-2024-21334

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Open Management Infrastructure (OMI) versions prior to the fixed version IBM QRadar SIEM on Azure Cloud versions 7.3.3 through 7.5.0
Description The Open Management Infrastructure (OMI) Remote Code Execution Vulnerability is related to the use of memory after it has been freed. Exploitation of this issue may allow a remote attacker to execute arbitrary code by sending specially crafted requests. The estimated impact and real-world incidents are not specified.
Recommendations For Open Management Infrastructure (OMI) versions prior to the fixed version, update to the latest version to resolve the issue. For IBM QRadar SIEM on Azure Cloud versions 7.3.3 through 7.5.0, update to a version outside of this range to mitigate the risk. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use After Free

Weakness Enumeration

Related Identifiers

BDU:2024-02001
CVE-2024-21334

Affected Products

Ibm Qradar Siem On Azure Cloud