CVE-2023-42463: wazuh-logcollector integer underflow local privilege escalation
Published Jan 12, 2024
·Updated
Wazuh is a free and open source platform used for threat prevention, detection, and response. This bug introduced a stack overflow hazard that could allow a local privilege escalation. This vulnerability was patched in version 4.5.3.
Affected Software
1 affected component
Wazuh Wazuh<4.5.3
Event History
Jan 12, 2024
CVE Published
via MITRE·08:55 PM
Data Sourced
via MITRE·08:55 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-42463?
CVE-2023-42463 has a high severity rating due to the potential for local privilege escalation.
2
How do I fix CVE-2023-42463?
To fix CVE-2023-42463, upgrade Wazuh to version 4.5.3 or later.
3
What software is affected by CVE-2023-42463?
CVE-2023-42463 affects Wazuh versions prior to 4.5.3.
4
What type of vulnerability is CVE-2023-42463?
CVE-2023-42463 is a stack overflow vulnerability that can lead to local privilege escalation.
5
When was CVE-2023-42463 disclosed?
CVE-2023-42463 was disclosed in 2023 and has been addressed with a patch.