CVE-2026-20481: Medium severity geniezone vulnerability
In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10965373; Issue ID: MSV-6935.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch ALPS10965373 - Compensating control
If a malicious actor may have already obtained the System privilege, treat the host as potentially compromised and apply incident response measures (e.g., isolate the affected system) until the patch is applied.