CVE-2023-7340: Wazuh authd service (os_auth) Heap-based Buffer Overflow
Wazuh authd contains a heap-buffer overflow vulnerability that allows attackers to cause memory corruption and malformed heap data by sending specially crafted input. Attackers can exploit this vulnerability to trigger a denial of service condition, resulting in low availability impact to the authentication daemon.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-7340?
CVE-2023-7340 has a high severity due to its potential for memory corruption and denial of service.
How do I fix CVE-2023-7340?
To fix CVE-2023-7340, you should update the Wazuh authd software to the latest version that contains the patch.
What type of vulnerability is CVE-2023-7340?
CVE-2023-7340 is classified as a heap buffer overflow vulnerability.
Who is affected by CVE-2023-7340?
CVE-2023-7340 affects users of Wazuh authd if they are using a version that has not been patched.
What can attackers do with CVE-2023-7340?
Attackers can exploit CVE-2023-7340 to cause denial of service by sending specially crafted input that triggers memory corruption.