Wazuh authd contains a heap-buffer overflow vulnerability that allows attackers to cause memory corruption and malformed heap data by sending specially crafted input. Attackers can exploit this vulnerability to trigger a denial of service condition, resulting in low availability impact to the authentication daemon.
References
| Link | Resource |
|---|---|
| https://github.com/advisories/GHSA-grjq-p5fg-m24r | Broken Link |
| https://www.vulncheck.com/advisories/heap-buffer-overflow-in-wazuh-authd | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
31 Mar 2026, 18:29
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:wazuh:wazuh:4.3.10:*:*:*:*:*:*:* cpe:2.3:a:wazuh:wazuh:*:*:*:*:*:*:*:* |
|
| References | () https://github.com/advisories/GHSA-grjq-p5fg-m24r - Broken Link | |
| References | () https://www.vulncheck.com/advisories/heap-buffer-overflow-in-wazuh-authd - Third Party Advisory | |
| First Time |
Wazuh wazuh
Wazuh |
27 Mar 2026, 16:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-27 16:16
Updated : 2026-03-31 18:29
NVD link : CVE-2026-32984
Mitre link : CVE-2026-32984
CVE.ORG link : CVE-2026-32984
JSON object : View
Products Affected
wazuh
- wazuh
CWE
CWE-125
Out-of-bounds Read
