CVE Vulnerabilities

CVE-2008-1353

Published: Mar 17, 2008 | Modified: Oct 11, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW

zabbix_agentd in ZABBIX 1.4.4 allows remote attackers to cause a denial of service (CPU and connection consumption) via multiple vfs.file.cksum commands with a special device node such as /dev/urandom or /dev/zero.

Affected Software

Name Vendor Start Version End Version
Zabbix Zabbix 1.1.2 (including) 1.1.2 (including)
Zabbix Zabbix 1.1.3 (including) 1.1.3 (including)
Zabbix Zabbix 1.1.4 (including) 1.1.4 (including)
Zabbix Zabbix 1.1.5 (including) 1.1.5 (including)
Zabbix Zabbix 1.4.2 (including) 1.4.2 (including)
Zabbix Zabbix 1.4.3 (including) 1.4.3 (including)
Zabbix Ubuntu edgy *
Zabbix Ubuntu feisty *
Zabbix Ubuntu gutsy *
Zabbix Ubuntu hardy *
Zabbix Ubuntu upstream *

References