[ZBX-22589] Allocation of large memory chunks and log write access from server-size JS (CVE-2023-29449) Created: 2023 Jan 06  Updated: 2024 Apr 30  Resolved: 2023 Apr 02

Status: Closed
Project: ZABBIX BUGS AND ISSUES
Component/s: Proxy (P), Server (S)
Affects Version/s: None
Fix Version/s: 5.0.32rc1, 6.0.14rc1, 6.2.8rc1, 6.4.0rc1, 7.0.0alpha1, 7.0 (plan)

Type: Defect (Security) Priority: Major
Reporter: Vjaceslavs Bogdanovs Assignee: Dmitrijs Goloscapovs
Resolution: Fixed Votes: 0
Labels: js, preprocessing, security
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Attachments: PNG File image-2023-01-02-11-58-40-998.png    
Issue Links:
Causes
causes ZBX-22492 "Error: log exceeds the maximum size ... Closed
causes ZBX-22488 Error: maximum count of HttpRequest o... Closed
Sub-task
Team: Team A
Sprint: Sprint 98 (Mar 2023)
Story Points: 1

 Comments   
Comment by Dmitrijs Goloscapovs [ 2023 Feb 03 ]

Available in versions:

Generated at Mon Mar 31 08:05:11 EEST 2025 using Jira 9.12.4#9120004-sha1:625303b708afdb767e17cb2838290c41888e9ff0.