CVE-2020-6582: Buffer Overflow
Published Mar 16, 2020
·Updated
Nagios NRPE 3.2.1 has a Heap-Based Buffer Overflow, as demonstrated by interpretation of a small negative number as a large positive number during a bzero call.
Affected Software
2 affected components
Nagios Remote Plug In Executor=3.2.1
Fedoraproject Fedora=32
Event History
Mar 16, 2020
CVE Published
via MITRE·05:13 PM
Data Sourced
via MITRE·05:13 PM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-6582?
CVE-2020-6582 is considered a high-severity vulnerability due to the potential for remote code execution resulting from a heap-based buffer overflow.
2
How do I fix CVE-2020-6582?
To fix CVE-2020-6582, update Nagios NRPE to version 3.2.2 or later, which includes the necessary patches.
3
What software is affected by CVE-2020-6582?
CVE-2020-6582 affects Nagios Remote Plugin Executor version 3.2.1 and Fedora version 32.
4
What type of vulnerability is CVE-2020-6582?
CVE-2020-6582 is classified as a heap-based buffer overflow vulnerability.
5
What are the potential impacts of CVE-2020-6582?
Exploitation of CVE-2020-6582 can lead to remote code execution, potentially allowing an attacker to gain control of the affected system.