Wazuh是Wazuh开源的一个应用软件。用于收集,汇总,索引和分析安全数据,帮助组织检测入侵,威胁和行为异常。 Wazuh 4.0.0版本至4.14.4之前版本存在安全漏洞,该漏洞源于parse_uname_string函数中存在多个基于堆的越界写入漏洞,该函数处理来自代理的操作系统识别数据,在4个位置存在危险代码模式,当字符串为空时strlen返回0,0减1因无符号整数下溢导致SIZE_MAX,指针算术环绕使SIZE_MAX变为-1,导致在分配缓冲区前1字节处写入,破坏堆元数据,可能导致堆损坏。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-30893 | 9.0 CRITICAL | Wazuh cluster sync path traversal in decompress_files() enables arbitrary file write and c |
| CVE-2026-26206 | 6.5 MEDIUM | Wazuh: API brute-force protection bypass via race condition in login attempt tracking |
| CVE-2026-28221 | 6.5 MEDIUM | Wazuh: Pre-auth stack-based buffer overflow in wazuh-remoted print_hex_string() due to sig |
| CVE-2026-26204 | 4.4 MEDIUM | Wazuh: Heap-based NULL WRITE Buffer Underflow in GetAlertData |
No comments yet