Security Advisory

CVE-2024-32038

9.8
CRITICAL

Vulnerability Description

Wazuh is a free and open source platform used for threat prevention, detection, and response. There is a buffer overflow hazard in wazuh-analysisd when handling Unicode characters from Windows Eventchannel messages. It impacts Wazuh Manager 3.8.0 and above. This vulnerability is fixed in Wazuh Manager 4.7.2.
Published Date April 19, 2024
Official Source NIST NVD Advisory