Action not permitted
Modal body text goes here.
Modal Title
Modal Body
CVE-2024-22119 (GCVE-0-2024-22119)
Vulnerability from cvelistv5
Published
2024-02-09 08:26
Modified
2025-06-09 17:19
Severity ?
VLAI Severity ?
EPSS score ?
CWE
- CWE-20 - Improper Input Validation
Summary
The cause of vulnerability is improper validation of form input field “Name” on Graph page in Items section.
References
► | URL | Tags | |||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
Impacted products
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-01T22:35:34.822Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "tags": [ "x_transferred" ], "url": "https://support.zabbix.com/browse/ZBX-24070" }, { "tags": [ "x_transferred" ], "url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html" } ], "title": "CVE Program Container" }, { "metrics": [ { "other": { "content": { "id": "CVE-2024-22119", "options": [ { "Exploitation": "poc" }, { "Automatable": "no" }, { "Technical Impact": "partial" } ], "role": "CISA Coordinator", "timestamp": "2024-02-22T14:54:06.610686Z", "version": "2.0.3" }, "type": "ssvc" } } ], "providerMetadata": { "dateUpdated": "2025-06-09T17:19:17.899Z", "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "shortName": "CISA-ADP" }, "title": "CISA ADP Vulnrichment" } ], "cna": { "affected": [ { "defaultStatus": "unaffected", "modules": [ "Frontend" ], "product": "Zabbix", "repo": "https://git.zabbix.com/", "vendor": "Zabbix", "versions": [ { "changes": [ { "at": "5.0.40rc1", "status": "unaffected" } ], "lessThanOrEqual": "5.0.39", "status": "affected", "version": "5.0.0", "versionType": "git" }, { "changes": [ { "at": "6.0.24rc1", "status": "unaffected" } ], "lessThanOrEqual": "6.0.23", "status": "affected", "version": "6.0.0", "versionType": "git" }, { "changes": [ { "at": "6.4.9rc1", "status": "unaffected" } ], "lessThanOrEqual": "6.4.8", "status": "affected", "version": "6.4.0", "versionType": "git" }, { "changes": [ { "at": "7.0.0alpha8", "status": "unaffected" } ], "lessThanOrEqual": "7.0.0alpha7", "status": "affected", "version": "7.0.0alpha1", "versionType": "git" } ] } ], "datePublic": "2024-01-05T08:23:00.000Z", "descriptions": [ { "lang": "en", "supportingMedia": [ { "base64": false, "type": "text/html", "value": "The cause of vulnerability is improper validation of form input field \u201cName\u201d on Graph page in Items section." } ], "value": "The cause of vulnerability is improper validation of form input field \u201cName\u201d on Graph page in Items section." } ], "impacts": [ { "capecId": "CAPEC-592", "descriptions": [ { "lang": "en", "value": "CAPEC-592 Stored XSS" } ] } ], "metrics": [ { "cvssV3_1": { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "LOW", "baseScore": 5.5, "baseSeverity": "MEDIUM", "confidentialityImpact": "LOW", "integrityImpact": "LOW", "privilegesRequired": "LOW", "scope": "UNCHANGED", "userInteraction": "REQUIRED", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L", "version": "3.1" }, "format": "CVSS", "scenarios": [ { "lang": "en", "value": "GENERAL" } ] } ], "problemTypes": [ { "descriptions": [ { "cweId": "CWE-20", "description": "CWE-20 Improper Input Validation", "lang": "en", "type": "CWE" } ] } ], "providerMetadata": { "dateUpdated": "2024-04-28T20:05:54.831Z", "orgId": "72de3e22-0555-4a0d-ae81-9249e0f0a1e8", "shortName": "Zabbix" }, "references": [ { "url": "https://support.zabbix.com/browse/ZBX-24070" }, { "url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html" } ], "source": { "discovery": "INTERNAL" }, "title": "Stored XSS in graph items select form", "x_generator": { "engine": "Vulnogram 0.1.0-dev" } } }, "cveMetadata": { "assignerOrgId": "72de3e22-0555-4a0d-ae81-9249e0f0a1e8", "assignerShortName": "Zabbix", "cveId": "CVE-2024-22119", "datePublished": "2024-02-09T08:26:20.006Z", "dateReserved": "2024-01-05T07:44:01.395Z", "dateUpdated": "2025-06-09T17:19:17.899Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1", "vulnerability-lookup:meta": { "nvd": "{\"cve\":{\"id\":\"CVE-2024-22119\",\"sourceIdentifier\":\"security@zabbix.com\",\"published\":\"2024-02-09T09:15:08.380\",\"lastModified\":\"2024-11-21T08:55:37.150\",\"vulnStatus\":\"Modified\",\"cveTags\":[],\"descriptions\":[{\"lang\":\"en\",\"value\":\"The cause of vulnerability is improper validation of form input field \u201cName\u201d on Graph page in Items section.\"},{\"lang\":\"es\",\"value\":\"La causa de la vulnerabilidad es la validaci\u00f3n inadecuada del campo de entrada del formulario \\\"Nombre\\\" en la p\u00e1gina Gr\u00e1fico en la secci\u00f3n Elementos.\"}],\"metrics\":{\"cvssMetricV31\":[{\"source\":\"security@zabbix.com\",\"type\":\"Secondary\",\"cvssData\":{\"version\":\"3.1\",\"vectorString\":\"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L\",\"baseScore\":5.5,\"baseSeverity\":\"MEDIUM\",\"attackVector\":\"NETWORK\",\"attackComplexity\":\"LOW\",\"privilegesRequired\":\"LOW\",\"userInteraction\":\"REQUIRED\",\"scope\":\"UNCHANGED\",\"confidentialityImpact\":\"LOW\",\"integrityImpact\":\"LOW\",\"availabilityImpact\":\"LOW\"},\"exploitabilityScore\":2.1,\"impactScore\":3.4},{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"cvssData\":{\"version\":\"3.1\",\"vectorString\":\"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N\",\"baseScore\":5.4,\"baseSeverity\":\"MEDIUM\",\"attackVector\":\"NETWORK\",\"attackComplexity\":\"LOW\",\"privilegesRequired\":\"LOW\",\"userInteraction\":\"REQUIRED\",\"scope\":\"CHANGED\",\"confidentialityImpact\":\"LOW\",\"integrityImpact\":\"LOW\",\"availabilityImpact\":\"NONE\"},\"exploitabilityScore\":2.3,\"impactScore\":2.7}]},\"weaknesses\":[{\"source\":\"security@zabbix.com\",\"type\":\"Secondary\",\"description\":[{\"lang\":\"en\",\"value\":\"CWE-20\"}]},{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"description\":[{\"lang\":\"en\",\"value\":\"CWE-79\"}]}],\"configurations\":[{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*\",\"versionStartIncluding\":\"5.0.0\",\"versionEndExcluding\":\"5.0.40\",\"matchCriteriaId\":\"2C94731C-B779-45AD-BBB4-E6F0D5A3E149\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*\",\"versionStartIncluding\":\"6.0.0\",\"versionEndExcluding\":\"6.0.24\",\"matchCriteriaId\":\"398840EF-B622-4395-8336-92ADABBBA142\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*\",\"versionStartIncluding\":\"6.4.0\",\"versionEndExcluding\":\"6.4.9\",\"matchCriteriaId\":\"B6105048-6C2E-4638-9595-3BEB09D06442\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:zabbix:zabbix:7.0.0:alpha1:*:*:*:*:*:*\",\"matchCriteriaId\":\"93EB5757-7F98-4428-9616-C30A647A6612\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:zabbix:zabbix:7.0.0:alpha2:*:*:*:*:*:*\",\"matchCriteriaId\":\"DA00BDB5-433F-44E5-87AC-DA01C64B5DB3\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:zabbix:zabbix:7.0.0:alpha3:*:*:*:*:*:*\",\"matchCriteriaId\":\"98C46C92-9D86-45CD-88FE-DFBB5502BB88\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:zabbix:zabbix:7.0.0:alpha4:*:*:*:*:*:*\",\"matchCriteriaId\":\"B568E6DD-A6D1-4402-BB40-7DA2596A5BC8\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:zabbix:zabbix:7.0.0:alpha5:*:*:*:*:*:*\",\"matchCriteriaId\":\"B9C3673B-8459-4C63-8E90-724D1D42A8BB\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:zabbix:zabbix:7.0.0:alpha6:*:*:*:*:*:*\",\"matchCriteriaId\":\"7C9F6957-7526-4852-A579-DE556DBFAA97\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:zabbix:zabbix:7.0.0:alpha7:*:*:*:*:*:*\",\"matchCriteriaId\":\"81A7A191-93DE-4C5D-963E-E8890FF7AACA\"}]}]}],\"references\":[{\"url\":\"https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html\",\"source\":\"security@zabbix.com\"},{\"url\":\"https://support.zabbix.com/browse/ZBX-24070\",\"source\":\"security@zabbix.com\",\"tags\":[\"Exploit\",\"Issue Tracking\",\"Patch\",\"Vendor Advisory\"]},{\"url\":\"https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://support.zabbix.com/browse/ZBX-24070\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Exploit\",\"Issue Tracking\",\"Patch\",\"Vendor Advisory\"]}]}}", "vulnrichment": { "containers": "{\"adp\": [{\"title\": \"CVE Program Container\", \"references\": [{\"url\": \"https://support.zabbix.com/browse/ZBX-24070\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html\", \"tags\": [\"x_transferred\"]}], \"providerMetadata\": {\"orgId\": \"af854a3a-2127-422b-91ae-364da2661108\", \"shortName\": \"CVE\", \"dateUpdated\": \"2024-08-01T22:35:34.822Z\"}}, {\"title\": \"CISA ADP Vulnrichment\", \"metrics\": [{\"other\": {\"type\": \"ssvc\", \"content\": {\"id\": \"CVE-2024-22119\", \"role\": \"CISA Coordinator\", \"options\": [{\"Exploitation\": \"poc\"}, {\"Automatable\": \"no\"}, {\"Technical Impact\": \"partial\"}], \"version\": \"2.0.3\", \"timestamp\": \"2024-02-22T14:54:06.610686Z\"}}}], \"providerMetadata\": {\"orgId\": \"134c704f-9b21-4f2e-91b3-4a467353bcc0\", \"shortName\": \"CISA-ADP\", \"dateUpdated\": \"2025-06-09T17:19:12.646Z\"}}], \"cna\": {\"title\": \"Stored XSS in graph items select form\", \"source\": {\"discovery\": \"INTERNAL\"}, \"impacts\": [{\"capecId\": \"CAPEC-592\", \"descriptions\": [{\"lang\": \"en\", \"value\": \"CAPEC-592 Stored XSS\"}]}], \"metrics\": [{\"format\": \"CVSS\", \"cvssV3_1\": {\"scope\": \"UNCHANGED\", \"version\": \"3.1\", \"baseScore\": 5.5, \"attackVector\": \"NETWORK\", \"baseSeverity\": \"MEDIUM\", \"vectorString\": \"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L\", \"integrityImpact\": \"LOW\", \"userInteraction\": \"REQUIRED\", \"attackComplexity\": \"LOW\", \"availabilityImpact\": \"LOW\", \"privilegesRequired\": \"LOW\", \"confidentialityImpact\": \"LOW\"}, \"scenarios\": [{\"lang\": \"en\", \"value\": \"GENERAL\"}]}], \"affected\": [{\"repo\": \"https://git.zabbix.com/\", \"vendor\": \"Zabbix\", \"modules\": [\"Frontend\"], \"product\": \"Zabbix\", \"versions\": [{\"status\": \"affected\", \"changes\": [{\"at\": \"5.0.40rc1\", \"status\": \"unaffected\"}], \"version\": \"5.0.0\", \"versionType\": \"git\", \"lessThanOrEqual\": \"5.0.39\"}, {\"status\": \"affected\", \"changes\": [{\"at\": \"6.0.24rc1\", \"status\": \"unaffected\"}], \"version\": \"6.0.0\", \"versionType\": \"git\", \"lessThanOrEqual\": \"6.0.23\"}, {\"status\": \"affected\", \"changes\": [{\"at\": \"6.4.9rc1\", \"status\": \"unaffected\"}], \"version\": \"6.4.0\", \"versionType\": \"git\", \"lessThanOrEqual\": \"6.4.8\"}, {\"status\": \"affected\", \"changes\": [{\"at\": \"7.0.0alpha8\", \"status\": \"unaffected\"}], \"version\": \"7.0.0alpha1\", \"versionType\": \"git\", \"lessThanOrEqual\": \"7.0.0alpha7\"}], \"defaultStatus\": \"unaffected\"}], \"datePublic\": \"2024-01-05T08:23:00.000Z\", \"references\": [{\"url\": \"https://support.zabbix.com/browse/ZBX-24070\"}, {\"url\": \"https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html\"}], \"x_generator\": {\"engine\": \"Vulnogram 0.1.0-dev\"}, \"descriptions\": [{\"lang\": \"en\", \"value\": \"The cause of vulnerability is improper validation of form input field \\u201cName\\u201d on Graph page in Items section.\", \"supportingMedia\": [{\"type\": \"text/html\", \"value\": \"The cause of vulnerability is improper validation of form input field \\u201cName\\u201d on Graph page in Items section.\", \"base64\": false}]}], \"problemTypes\": [{\"descriptions\": [{\"lang\": \"en\", \"type\": \"CWE\", \"cweId\": \"CWE-20\", \"description\": \"CWE-20 Improper Input Validation\"}]}], \"providerMetadata\": {\"orgId\": \"72de3e22-0555-4a0d-ae81-9249e0f0a1e8\", \"shortName\": \"Zabbix\", \"dateUpdated\": \"2024-04-28T20:05:54.831Z\"}}}", "cveMetadata": "{\"cveId\": \"CVE-2024-22119\", \"state\": \"PUBLISHED\", \"dateUpdated\": \"2025-06-09T17:19:17.899Z\", \"dateReserved\": \"2024-01-05T07:44:01.395Z\", \"assignerOrgId\": \"72de3e22-0555-4a0d-ae81-9249e0f0a1e8\", \"datePublished\": \"2024-02-09T08:26:20.006Z\", \"assignerShortName\": \"Zabbix\"}", "dataType": "CVE_RECORD", "dataVersion": "5.1" } } }
suse-su-2024:0862-1
Vulnerability from csaf_suse
Published
2024-03-13 08:16
Modified
2024-03-13 08:16
Summary
Security update for zabbix
Notes
Title of the patch
Security update for zabbix
Description of the patch
This update for zabbix fixes the following issues:
- CVE-2024-22119: Fixed ability to run XSS in graph item names (bsc#1219775).
Patchnames
SUSE-2024-862,SUSE-SLE-SERVER-12-SP5-2024-862
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "moderate" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Security update for zabbix", "title": "Title of the patch" }, { "category": "description", "text": "This update for zabbix fixes the following issues:\n\n- CVE-2024-22119: Fixed ability to run XSS in graph item names (bsc#1219775).\n", "title": "Description of the patch" }, { "category": "details", "text": "SUSE-2024-862,SUSE-SLE-SERVER-12-SP5-2024-862", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2024_0862-1.json" }, { "category": "self", "summary": "URL for SUSE-SU-2024:0862-1", "url": "https://www.suse.com/support/update/announcement/2024/suse-su-20240862-1/" }, { "category": "self", "summary": "E-Mail link for SUSE-SU-2024:0862-1", "url": "https://lists.suse.com/pipermail/sle-security-updates/2024-March/018158.html" }, { "category": "self", "summary": "SUSE Bug 1219775", "url": "https://bugzilla.suse.com/1219775" }, { "category": "self", "summary": "SUSE CVE CVE-2024-22119 page", "url": "https://www.suse.com/security/cve/CVE-2024-22119/" } ], "title": "Security update for zabbix", "tracking": { "current_release_date": "2024-03-13T08:16:03Z", "generator": { "date": "2024-03-13T08:16:03Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "SUSE-SU-2024:0862-1", "initial_release_date": "2024-03-13T08:16:03Z", "revision_history": [ { "date": "2024-03-13T08:16:03Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.12-4.27.1.aarch64", "product": { "name": "zabbix-agent-4.0.12-4.27.1.aarch64", "product_id": "zabbix-agent-4.0.12-4.27.1.aarch64" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.12-4.27.1.aarch64", "product": { "name": "zabbix-java-gateway-4.0.12-4.27.1.aarch64", "product_id": "zabbix-java-gateway-4.0.12-4.27.1.aarch64" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.12-4.27.1.aarch64", "product": { "name": "zabbix-phpfrontend-4.0.12-4.27.1.aarch64", "product_id": "zabbix-phpfrontend-4.0.12-4.27.1.aarch64" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.12-4.27.1.aarch64", "product": { "name": "zabbix-proxy-4.0.12-4.27.1.aarch64", "product_id": "zabbix-proxy-4.0.12-4.27.1.aarch64" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.12-4.27.1.aarch64", "product": { "name": "zabbix-proxy-mysql-4.0.12-4.27.1.aarch64", "product_id": "zabbix-proxy-mysql-4.0.12-4.27.1.aarch64" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.aarch64", "product": { "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.aarch64", "product_id": "zabbix-proxy-postgresql-4.0.12-4.27.1.aarch64" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.aarch64", "product": { "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.aarch64", "product_id": "zabbix-proxy-sqlite-4.0.12-4.27.1.aarch64" } }, { "category": "product_version", "name": "zabbix-server-4.0.12-4.27.1.aarch64", "product": { "name": "zabbix-server-4.0.12-4.27.1.aarch64", "product_id": "zabbix-server-4.0.12-4.27.1.aarch64" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.12-4.27.1.aarch64", "product": { "name": "zabbix-server-mysql-4.0.12-4.27.1.aarch64", "product_id": "zabbix-server-mysql-4.0.12-4.27.1.aarch64" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.12-4.27.1.aarch64", "product": { "name": "zabbix-server-postgresql-4.0.12-4.27.1.aarch64", "product_id": "zabbix-server-postgresql-4.0.12-4.27.1.aarch64" } } ], "category": "architecture", "name": "aarch64" }, { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.12-4.27.1.i586", "product": { "name": "zabbix-agent-4.0.12-4.27.1.i586", "product_id": "zabbix-agent-4.0.12-4.27.1.i586" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.12-4.27.1.i586", "product": { "name": "zabbix-java-gateway-4.0.12-4.27.1.i586", "product_id": "zabbix-java-gateway-4.0.12-4.27.1.i586" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.12-4.27.1.i586", "product": { "name": "zabbix-phpfrontend-4.0.12-4.27.1.i586", "product_id": "zabbix-phpfrontend-4.0.12-4.27.1.i586" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.12-4.27.1.i586", "product": { "name": "zabbix-proxy-4.0.12-4.27.1.i586", "product_id": "zabbix-proxy-4.0.12-4.27.1.i586" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.12-4.27.1.i586", "product": { "name": "zabbix-proxy-mysql-4.0.12-4.27.1.i586", "product_id": "zabbix-proxy-mysql-4.0.12-4.27.1.i586" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.i586", "product": { "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.i586", "product_id": "zabbix-proxy-postgresql-4.0.12-4.27.1.i586" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.i586", "product": { "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.i586", "product_id": "zabbix-proxy-sqlite-4.0.12-4.27.1.i586" } }, { "category": "product_version", "name": "zabbix-server-4.0.12-4.27.1.i586", "product": { "name": "zabbix-server-4.0.12-4.27.1.i586", "product_id": "zabbix-server-4.0.12-4.27.1.i586" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.12-4.27.1.i586", "product": { "name": "zabbix-server-mysql-4.0.12-4.27.1.i586", "product_id": "zabbix-server-mysql-4.0.12-4.27.1.i586" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.12-4.27.1.i586", "product": { "name": "zabbix-server-postgresql-4.0.12-4.27.1.i586", "product_id": "zabbix-server-postgresql-4.0.12-4.27.1.i586" } } ], "category": "architecture", "name": "i586" }, { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.12-4.27.1.ppc64le", "product": { "name": "zabbix-agent-4.0.12-4.27.1.ppc64le", "product_id": "zabbix-agent-4.0.12-4.27.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.12-4.27.1.ppc64le", "product": { "name": "zabbix-java-gateway-4.0.12-4.27.1.ppc64le", "product_id": "zabbix-java-gateway-4.0.12-4.27.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.12-4.27.1.ppc64le", "product": { "name": "zabbix-phpfrontend-4.0.12-4.27.1.ppc64le", "product_id": "zabbix-phpfrontend-4.0.12-4.27.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.12-4.27.1.ppc64le", "product": { "name": "zabbix-proxy-4.0.12-4.27.1.ppc64le", "product_id": "zabbix-proxy-4.0.12-4.27.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.12-4.27.1.ppc64le", "product": { "name": "zabbix-proxy-mysql-4.0.12-4.27.1.ppc64le", "product_id": "zabbix-proxy-mysql-4.0.12-4.27.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.ppc64le", "product": { "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.ppc64le", "product_id": "zabbix-proxy-postgresql-4.0.12-4.27.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.ppc64le", "product": { "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.ppc64le", "product_id": "zabbix-proxy-sqlite-4.0.12-4.27.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-server-4.0.12-4.27.1.ppc64le", "product": { "name": "zabbix-server-4.0.12-4.27.1.ppc64le", "product_id": "zabbix-server-4.0.12-4.27.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.12-4.27.1.ppc64le", "product": { "name": "zabbix-server-mysql-4.0.12-4.27.1.ppc64le", "product_id": "zabbix-server-mysql-4.0.12-4.27.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.12-4.27.1.ppc64le", "product": { "name": "zabbix-server-postgresql-4.0.12-4.27.1.ppc64le", "product_id": "zabbix-server-postgresql-4.0.12-4.27.1.ppc64le" } } ], "category": "architecture", "name": "ppc64le" }, { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.12-4.27.1.s390", "product": { "name": "zabbix-agent-4.0.12-4.27.1.s390", "product_id": "zabbix-agent-4.0.12-4.27.1.s390" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.12-4.27.1.s390", "product": { "name": "zabbix-java-gateway-4.0.12-4.27.1.s390", "product_id": "zabbix-java-gateway-4.0.12-4.27.1.s390" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.12-4.27.1.s390", "product": { "name": "zabbix-phpfrontend-4.0.12-4.27.1.s390", "product_id": "zabbix-phpfrontend-4.0.12-4.27.1.s390" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.12-4.27.1.s390", "product": { "name": "zabbix-proxy-4.0.12-4.27.1.s390", "product_id": "zabbix-proxy-4.0.12-4.27.1.s390" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.12-4.27.1.s390", "product": { "name": "zabbix-proxy-mysql-4.0.12-4.27.1.s390", "product_id": "zabbix-proxy-mysql-4.0.12-4.27.1.s390" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.s390", "product": { "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.s390", "product_id": "zabbix-proxy-postgresql-4.0.12-4.27.1.s390" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.s390", "product": { "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.s390", "product_id": "zabbix-proxy-sqlite-4.0.12-4.27.1.s390" } }, { "category": "product_version", "name": "zabbix-server-4.0.12-4.27.1.s390", "product": { "name": "zabbix-server-4.0.12-4.27.1.s390", "product_id": "zabbix-server-4.0.12-4.27.1.s390" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.12-4.27.1.s390", "product": { "name": "zabbix-server-mysql-4.0.12-4.27.1.s390", "product_id": "zabbix-server-mysql-4.0.12-4.27.1.s390" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.12-4.27.1.s390", "product": { "name": "zabbix-server-postgresql-4.0.12-4.27.1.s390", "product_id": "zabbix-server-postgresql-4.0.12-4.27.1.s390" } } ], "category": "architecture", "name": "s390" }, { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.12-4.27.1.s390x", "product": { "name": "zabbix-agent-4.0.12-4.27.1.s390x", "product_id": "zabbix-agent-4.0.12-4.27.1.s390x" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.12-4.27.1.s390x", "product": { "name": "zabbix-java-gateway-4.0.12-4.27.1.s390x", "product_id": "zabbix-java-gateway-4.0.12-4.27.1.s390x" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.12-4.27.1.s390x", "product": { "name": "zabbix-phpfrontend-4.0.12-4.27.1.s390x", "product_id": "zabbix-phpfrontend-4.0.12-4.27.1.s390x" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.12-4.27.1.s390x", "product": { "name": "zabbix-proxy-4.0.12-4.27.1.s390x", "product_id": "zabbix-proxy-4.0.12-4.27.1.s390x" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.12-4.27.1.s390x", "product": { "name": "zabbix-proxy-mysql-4.0.12-4.27.1.s390x", "product_id": "zabbix-proxy-mysql-4.0.12-4.27.1.s390x" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.s390x", "product": { "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.s390x", "product_id": "zabbix-proxy-postgresql-4.0.12-4.27.1.s390x" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.s390x", "product": { "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.s390x", "product_id": "zabbix-proxy-sqlite-4.0.12-4.27.1.s390x" } }, { "category": "product_version", "name": "zabbix-server-4.0.12-4.27.1.s390x", "product": { "name": "zabbix-server-4.0.12-4.27.1.s390x", "product_id": "zabbix-server-4.0.12-4.27.1.s390x" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.12-4.27.1.s390x", "product": { "name": "zabbix-server-mysql-4.0.12-4.27.1.s390x", "product_id": "zabbix-server-mysql-4.0.12-4.27.1.s390x" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.12-4.27.1.s390x", "product": { "name": "zabbix-server-postgresql-4.0.12-4.27.1.s390x", "product_id": "zabbix-server-postgresql-4.0.12-4.27.1.s390x" } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.12-4.27.1.x86_64", "product": { "name": "zabbix-agent-4.0.12-4.27.1.x86_64", "product_id": "zabbix-agent-4.0.12-4.27.1.x86_64" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.12-4.27.1.x86_64", "product": { "name": "zabbix-java-gateway-4.0.12-4.27.1.x86_64", "product_id": "zabbix-java-gateway-4.0.12-4.27.1.x86_64" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.12-4.27.1.x86_64", "product": { "name": "zabbix-phpfrontend-4.0.12-4.27.1.x86_64", "product_id": "zabbix-phpfrontend-4.0.12-4.27.1.x86_64" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.12-4.27.1.x86_64", "product": { "name": "zabbix-proxy-4.0.12-4.27.1.x86_64", "product_id": "zabbix-proxy-4.0.12-4.27.1.x86_64" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.12-4.27.1.x86_64", "product": { "name": "zabbix-proxy-mysql-4.0.12-4.27.1.x86_64", "product_id": "zabbix-proxy-mysql-4.0.12-4.27.1.x86_64" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.x86_64", "product": { "name": "zabbix-proxy-postgresql-4.0.12-4.27.1.x86_64", "product_id": "zabbix-proxy-postgresql-4.0.12-4.27.1.x86_64" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.x86_64", "product": { "name": "zabbix-proxy-sqlite-4.0.12-4.27.1.x86_64", "product_id": "zabbix-proxy-sqlite-4.0.12-4.27.1.x86_64" } }, { "category": "product_version", "name": "zabbix-server-4.0.12-4.27.1.x86_64", "product": { "name": "zabbix-server-4.0.12-4.27.1.x86_64", "product_id": "zabbix-server-4.0.12-4.27.1.x86_64" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.12-4.27.1.x86_64", "product": { "name": "zabbix-server-mysql-4.0.12-4.27.1.x86_64", "product_id": "zabbix-server-mysql-4.0.12-4.27.1.x86_64" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.12-4.27.1.x86_64", "product": { "name": "zabbix-server-postgresql-4.0.12-4.27.1.x86_64", "product_id": "zabbix-server-postgresql-4.0.12-4.27.1.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "SUSE Linux Enterprise Server 12 SP5", "product": { "name": "SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5", "product_identification_helper": { "cpe": "cpe:/o:suse:sles:12:sp5" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product": { "name": "SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_identification_helper": { "cpe": "cpe:/o:suse:sles_sap:12:sp5" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.12-4.27.1.aarch64 as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.aarch64" }, "product_reference": "zabbix-agent-4.0.12-4.27.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.12-4.27.1.ppc64le as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.ppc64le" }, "product_reference": "zabbix-agent-4.0.12-4.27.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.12-4.27.1.s390x as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.s390x" }, "product_reference": "zabbix-agent-4.0.12-4.27.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.12-4.27.1.x86_64 as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.x86_64" }, "product_reference": "zabbix-agent-4.0.12-4.27.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.12-4.27.1.aarch64 as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.aarch64" }, "product_reference": "zabbix-agent-4.0.12-4.27.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.12-4.27.1.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.ppc64le" }, "product_reference": "zabbix-agent-4.0.12-4.27.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.12-4.27.1.s390x as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.s390x" }, "product_reference": "zabbix-agent-4.0.12-4.27.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.12-4.27.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.x86_64" }, "product_reference": "zabbix-agent-4.0.12-4.27.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" } ] }, "vulnerabilities": [ { "cve": "CVE-2024-22119", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-22119" } ], "notes": [ { "category": "general", "text": "The cause of vulnerability is improper validation of form input field \"Name\" on Graph page in Items section.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.s390x", "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-22119", "url": "https://www.suse.com/security/cve/CVE-2024-22119" }, { "category": "external", "summary": "SUSE Bug 1219775 for CVE-2024-22119", "url": "https://bugzilla.suse.com/1219775" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.s390x", "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.s390x", "SUSE Linux Enterprise Server 12 SP5:zabbix-agent-4.0.12-4.27.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:zabbix-agent-4.0.12-4.27.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-03-13T08:16:03Z", "details": "moderate" } ], "title": "CVE-2024-22119" } ] }
fkie_cve-2024-22119
Vulnerability from fkie_nvd
Published
2024-02-09 09:15
Modified
2024-11-21 08:55
Severity ?
5.5 (Medium) - CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L
5.4 (Medium) - CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
5.4 (Medium) - CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Summary
The cause of vulnerability is improper validation of form input field “Name” on Graph page in Items section.
References
▶ | URL | Tags | |
---|---|---|---|
security@zabbix.com | https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html | ||
security@zabbix.com | https://support.zabbix.com/browse/ZBX-24070 | Exploit, Issue Tracking, Patch, Vendor Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html | ||
af854a3a-2127-422b-91ae-364da2661108 | https://support.zabbix.com/browse/ZBX-24070 | Exploit, Issue Tracking, Patch, Vendor Advisory |
Impacted products
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*", "matchCriteriaId": "2C94731C-B779-45AD-BBB4-E6F0D5A3E149", "versionEndExcluding": "5.0.40", "versionStartIncluding": "5.0.0", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*", "matchCriteriaId": "398840EF-B622-4395-8336-92ADABBBA142", "versionEndExcluding": "6.0.24", "versionStartIncluding": "6.0.0", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*", "matchCriteriaId": "B6105048-6C2E-4638-9595-3BEB09D06442", "versionEndExcluding": "6.4.9", "versionStartIncluding": "6.4.0", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha1:*:*:*:*:*:*", "matchCriteriaId": "93EB5757-7F98-4428-9616-C30A647A6612", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha2:*:*:*:*:*:*", "matchCriteriaId": "DA00BDB5-433F-44E5-87AC-DA01C64B5DB3", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha3:*:*:*:*:*:*", "matchCriteriaId": "98C46C92-9D86-45CD-88FE-DFBB5502BB88", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha4:*:*:*:*:*:*", "matchCriteriaId": "B568E6DD-A6D1-4402-BB40-7DA2596A5BC8", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha5:*:*:*:*:*:*", "matchCriteriaId": "B9C3673B-8459-4C63-8E90-724D1D42A8BB", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha6:*:*:*:*:*:*", "matchCriteriaId": "7C9F6957-7526-4852-A579-DE556DBFAA97", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha7:*:*:*:*:*:*", "matchCriteriaId": "81A7A191-93DE-4C5D-963E-E8890FF7AACA", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "The cause of vulnerability is improper validation of form input field \u201cName\u201d on Graph page in Items section." }, { "lang": "es", "value": "La causa de la vulnerabilidad es la validaci\u00f3n inadecuada del campo de entrada del formulario \"Nombre\" en la p\u00e1gina Gr\u00e1fico en la secci\u00f3n Elementos." } ], "id": "CVE-2024-22119", "lastModified": "2024-11-21T08:55:37.150", "metrics": { "cvssMetricV31": [ { "cvssData": { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "LOW", "baseScore": 5.5, "baseSeverity": "MEDIUM", "confidentialityImpact": "LOW", "integrityImpact": "LOW", "privilegesRequired": "LOW", "scope": "UNCHANGED", "userInteraction": "REQUIRED", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L", "version": "3.1" }, "exploitabilityScore": 2.1, "impactScore": 3.4, "source": "security@zabbix.com", "type": "Secondary" }, { "cvssData": { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "NONE", "baseScore": 5.4, "baseSeverity": "MEDIUM", "confidentialityImpact": "LOW", "integrityImpact": "LOW", "privilegesRequired": "LOW", "scope": "CHANGED", "userInteraction": "REQUIRED", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N", "version": "3.1" }, "exploitabilityScore": 2.3, "impactScore": 2.7, "source": "nvd@nist.gov", "type": "Primary" } ] }, "published": "2024-02-09T09:15:08.380", "references": [ { "source": "security@zabbix.com", "url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html" }, { "source": "security@zabbix.com", "tags": [ "Exploit", "Issue Tracking", "Patch", "Vendor Advisory" ], "url": "https://support.zabbix.com/browse/ZBX-24070" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Exploit", "Issue Tracking", "Patch", "Vendor Advisory" ], "url": "https://support.zabbix.com/browse/ZBX-24070" } ], "sourceIdentifier": "security@zabbix.com", "vulnStatus": "Modified", "weaknesses": [ { "description": [ { "lang": "en", "value": "CWE-20" } ], "source": "security@zabbix.com", "type": "Secondary" }, { "description": [ { "lang": "en", "value": "CWE-79" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }
opensuse-su-2024:0064-1
Vulnerability from csaf_opensuse
Published
2024-03-01 10:15
Modified
2024-03-01 10:15
Summary
Security update for zabbix
Notes
Title of the patch
Security update for zabbix
Description of the patch
This update for zabbix fixes the following issues:
- CVE-2024-22119: Fixed a stored XSS in graph items select form (boo#1219775).
Patchnames
openSUSE-2024-64
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "moderate" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Security update for zabbix", "title": "Title of the patch" }, { "category": "description", "text": "This update for zabbix fixes the following issues:\n\n- CVE-2024-22119: Fixed a stored XSS in graph items select form (boo#1219775).\n", "title": "Description of the patch" }, { "category": "details", "text": "openSUSE-2024-64", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/opensuse-su-2024_0064-1.json" }, { "category": "self", "summary": "URL for openSUSE-SU-2024:0064-1", "url": "https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/77EQS2XXGKMRBJR36XU7OBBZBMHJPDHT/" }, { "category": "self", "summary": "E-Mail link for openSUSE-SU-2024:0064-1", "url": "https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/77EQS2XXGKMRBJR36XU7OBBZBMHJPDHT/" }, { "category": "self", "summary": "SUSE Bug 1219775", "url": "https://bugzilla.suse.com/1219775" }, { "category": "self", "summary": "SUSE CVE CVE-2024-22119 page", "url": "https://www.suse.com/security/cve/CVE-2024-22119/" } ], "title": "Security update for zabbix", "tracking": { "current_release_date": "2024-03-01T10:15:08Z", "generator": { "date": "2024-03-01T10:15:08Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "openSUSE-SU-2024:0064-1", "initial_release_date": "2024-03-01T10:15:08Z", "revision_history": [ { "date": "2024-03-01T10:15:08Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.50-bp155.3.12.1.aarch64", "product": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.aarch64", "product_id": "zabbix-agent-4.0.50-bp155.3.12.1.aarch64" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64", "product": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64", "product_id": "zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64", "product": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64", "product_id": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.50-bp155.3.12.1.aarch64", "product": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.aarch64", "product_id": "zabbix-proxy-4.0.50-bp155.3.12.1.aarch64" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64", "product": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64", "product_id": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64", "product": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64", "product_id": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64", "product": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64", "product_id": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64" } }, { "category": "product_version", "name": "zabbix-server-4.0.50-bp155.3.12.1.aarch64", "product": { "name": "zabbix-server-4.0.50-bp155.3.12.1.aarch64", "product_id": "zabbix-server-4.0.50-bp155.3.12.1.aarch64" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64", "product": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64", "product_id": "zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64", "product": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64", "product_id": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64" } } ], "category": "architecture", "name": "aarch64" }, { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.50-bp155.3.12.1.i586", "product": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.i586", "product_id": "zabbix-agent-4.0.50-bp155.3.12.1.i586" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.i586", "product": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.i586", "product_id": "zabbix-java-gateway-4.0.50-bp155.3.12.1.i586" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586", "product": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586", "product_id": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.50-bp155.3.12.1.i586", "product": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.i586", "product_id": "zabbix-proxy-4.0.50-bp155.3.12.1.i586" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586", "product": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586", "product_id": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586", "product": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586", "product_id": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586", "product": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586", "product_id": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586" } }, { "category": "product_version", "name": "zabbix-server-4.0.50-bp155.3.12.1.i586", "product": { "name": "zabbix-server-4.0.50-bp155.3.12.1.i586", "product_id": "zabbix-server-4.0.50-bp155.3.12.1.i586" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.i586", "product": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.i586", "product_id": "zabbix-server-mysql-4.0.50-bp155.3.12.1.i586" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586", "product": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586", "product_id": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586" } } ], "category": "architecture", "name": "i586" }, { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.50-bp155.3.12.1.ppc64le", "product": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.ppc64le", "product_id": "zabbix-agent-4.0.50-bp155.3.12.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le", "product": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le", "product_id": "zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le", "product": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le", "product_id": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le", "product": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le", "product_id": "zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le", "product": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le", "product_id": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le", "product": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le", "product_id": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le", "product": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le", "product_id": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-server-4.0.50-bp155.3.12.1.ppc64le", "product": { "name": "zabbix-server-4.0.50-bp155.3.12.1.ppc64le", "product_id": "zabbix-server-4.0.50-bp155.3.12.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le", "product": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le", "product_id": "zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le", "product": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le", "product_id": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le" } } ], "category": "architecture", "name": "ppc64le" }, { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.50-bp155.3.12.1.s390x", "product": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.s390x", "product_id": "zabbix-agent-4.0.50-bp155.3.12.1.s390x" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x", "product": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x", "product_id": "zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x", "product": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x", "product_id": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.50-bp155.3.12.1.s390x", "product": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.s390x", "product_id": "zabbix-proxy-4.0.50-bp155.3.12.1.s390x" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x", "product": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x", "product_id": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x", "product": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x", "product_id": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x", "product": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x", "product_id": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x" } }, { "category": "product_version", "name": "zabbix-server-4.0.50-bp155.3.12.1.s390x", "product": { "name": "zabbix-server-4.0.50-bp155.3.12.1.s390x", "product_id": "zabbix-server-4.0.50-bp155.3.12.1.s390x" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x", "product": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x", "product_id": "zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x", "product": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x", "product_id": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x" } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "zabbix-agent-4.0.50-bp155.3.12.1.x86_64", "product": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.x86_64", "product_id": "zabbix-agent-4.0.50-bp155.3.12.1.x86_64" } }, { "category": "product_version", "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64", "product": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64", "product_id": "zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64" } }, { "category": "product_version", "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64", "product": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64", "product_id": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64" } }, { "category": "product_version", "name": "zabbix-proxy-4.0.50-bp155.3.12.1.x86_64", "product": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.x86_64", "product_id": "zabbix-proxy-4.0.50-bp155.3.12.1.x86_64" } }, { "category": "product_version", "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64", "product": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64", "product_id": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64" } }, { "category": "product_version", "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64", "product": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64", "product_id": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64" } }, { "category": "product_version", "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64", "product": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64", "product_id": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64" } }, { "category": "product_version", "name": "zabbix-server-4.0.50-bp155.3.12.1.x86_64", "product": { "name": "zabbix-server-4.0.50-bp155.3.12.1.x86_64", "product_id": "zabbix-server-4.0.50-bp155.3.12.1.x86_64" } }, { "category": "product_version", "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64", "product": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64", "product_id": "zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64" } }, { "category": "product_version", "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64", "product": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64", "product_id": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "SUSE Package Hub 15 SP5", "product": { "name": "SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5" } }, { "category": "product_name", "name": "openSUSE Leap 15.5", "product": { "name": "openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5", "product_identification_helper": { "cpe": "cpe:/o:opensuse:leap:15.5" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.aarch64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-agent-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.i586 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-agent-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.ppc64le as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-agent-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.s390x as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-agent-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.x86_64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-agent-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.i586 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-java-gateway-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.aarch64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-proxy-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.i586 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-proxy-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.s390x as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-proxy-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.x86_64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-proxy-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-4.0.50-bp155.3.12.1.aarch64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-server-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-4.0.50-bp155.3.12.1.i586 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-server-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-4.0.50-bp155.3.12.1.ppc64le as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-server-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-4.0.50-bp155.3.12.1.s390x as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-server-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-4.0.50-bp155.3.12.1.x86_64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-server-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.i586 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-server-mysql-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64 as component of SUSE Package Hub 15 SP5", "product_id": "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "SUSE Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-agent-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.i586 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-agent-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-agent-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-agent-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-agent-4.0.50-bp155.3.12.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-agent-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.i586 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-java-gateway-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-proxy-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.i586 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-proxy-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-proxy-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-4.0.50-bp155.3.12.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-proxy-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-4.0.50-bp155.3.12.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-server-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-4.0.50-bp155.3.12.1.i586 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-server-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-4.0.50-bp155.3.12.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-server-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-4.0.50-bp155.3.12.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-server-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-4.0.50-bp155.3.12.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-server-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.i586 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-server-mysql-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64" }, "product_reference": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586" }, "product_reference": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le" }, "product_reference": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x" }, "product_reference": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64" }, "product_reference": "zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" } ] }, "vulnerabilities": [ { "cve": "CVE-2024-22119", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2024-22119" } ], "notes": [ { "category": "general", "text": "The cause of vulnerability is improper validation of form input field \"Name\" on Graph page in Items section.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2024-22119", "url": "https://www.suse.com/security/cve/CVE-2024-22119" }, { "category": "external", "summary": "SUSE Bug 1219775 for CVE-2024-22119", "url": "https://bugzilla.suse.com/1219775" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.4, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N", "version": "3.1" }, "products": [ "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-agent-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-server-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x", "SUSE Package Hub 15 SP5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-agent-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-java-gateway-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-phpfrontend-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-mysql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-postgresql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-proxy-sqlite-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-server-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-server-mysql-4.0.50-bp155.3.12.1.x86_64", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.aarch64", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.i586", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.ppc64le", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.s390x", "openSUSE Leap 15.5:zabbix-server-postgresql-4.0.50-bp155.3.12.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-03-01T10:15:08Z", "details": "moderate" } ], "title": "CVE-2024-22119" } ] }
wid-sec-w-2024-0339
Vulnerability from csaf_certbund
Published
2024-02-08 23:00
Modified
2024-10-03 22:00
Summary
Zabbix: Schwachstelle ermöglicht Cross-Site Scripting
Notes
Das BSI ist als Anbieter für die eigenen, zur Nutzung bereitgestellten Inhalte nach den allgemeinen Gesetzen verantwortlich. Nutzerinnen und Nutzer sind jedoch dafür verantwortlich, die Verwendung und/oder die Umsetzung der mit den Inhalten bereitgestellten Informationen sorgfältig im Einzelfall zu prüfen.
Produktbeschreibung
Zabbix ist ein Open-Source Netzwerk-Monitoringsystem.
Angriff
Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Zabbix ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.
Betroffene Betriebssysteme
- Linux
- UNIX
{ "document": { "aggregate_severity": { "text": "mittel" }, "category": "csaf_base", "csaf_version": "2.0", "distribution": { "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "de-DE", "notes": [ { "category": "legal_disclaimer", "text": "Das BSI ist als Anbieter f\u00fcr die eigenen, zur Nutzung bereitgestellten Inhalte nach den allgemeinen Gesetzen verantwortlich. Nutzerinnen und Nutzer sind jedoch daf\u00fcr verantwortlich, die Verwendung und/oder die Umsetzung der mit den Inhalten bereitgestellten Informationen sorgf\u00e4ltig im Einzelfall zu pr\u00fcfen." }, { "category": "description", "text": "Zabbix ist ein Open-Source Netzwerk-Monitoringsystem.", "title": "Produktbeschreibung" }, { "category": "summary", "text": "Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Zabbix ausnutzen, um einen Cross-Site Scripting Angriff durchzuf\u00fchren.", "title": "Angriff" }, { "category": "general", "text": "- Linux\n- UNIX", "title": "Betroffene Betriebssysteme" } ], "publisher": { "category": "other", "contact_details": "csaf-provider@cert-bund.de", "name": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik", "namespace": "https://www.bsi.bund.de" }, "references": [ { "category": "self", "summary": "WID-SEC-W-2024-0339 - CSAF Version", "url": "https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-0339.json" }, { "category": "self", "summary": "WID-SEC-2024-0339 - Portal Version", "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-0339" }, { "category": "external", "summary": "SUSE Security Update SUSE-SU-2024:0862-1 vom 2024-03-13", "url": "https://lists.suse.com/pipermail/sle-security-updates/2024-March/018158.html" }, { "category": "external", "summary": "ZABBIX BUGS AND ISSUES ZBX-24070 vom 2024-02-09", "url": "https://support.zabbix.com/browse/ZBX-24070" }, { "category": "external", "summary": "Github Advisory", "url": "https://github.com/advisories/GHSA-8w8q-863g-6gx9" }, { "category": "external", "summary": "Debian Security Advisory DLA-3798 vom 2024-04-28", "url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html" }, { "category": "external", "summary": "Debian Security Advisory DLA-3909 vom 2024-10-03", "url": "https://lists.debian.org/debian-lts-announce/2024/10/msg00000.html" } ], "source_lang": "en-US", "title": "Zabbix: Schwachstelle erm\u00f6glicht Cross-Site Scripting", "tracking": { "current_release_date": "2024-10-03T22:00:00.000+00:00", "generator": { "date": "2024-10-04T08:13:26.876+00:00", "engine": { "name": "BSI-WID", "version": "1.3.8" } }, "id": "WID-SEC-W-2024-0339", "initial_release_date": "2024-02-08T23:00:00.000+00:00", "revision_history": [ { "date": "2024-02-08T23:00:00.000+00:00", "number": "1", "summary": "Initiale Fassung" }, { "date": "2024-03-13T23:00:00.000+00:00", "number": "2", "summary": "Neue Updates von SUSE aufgenommen" }, { "date": "2024-04-28T22:00:00.000+00:00", "number": "3", "summary": "Neue Updates von Debian aufgenommen" }, { "date": "2024-10-03T22:00:00.000+00:00", "number": "4", "summary": "Neue Updates von Debian aufgenommen" } ], "status": "final", "version": "4" } }, "product_tree": { "branches": [ { "branches": [ { "category": "product_name", "name": "Debian Linux", "product": { "name": "Debian Linux", "product_id": "2951", "product_identification_helper": { "cpe": "cpe:/o:debian:debian_linux:-" } } } ], "category": "vendor", "name": "Debian" }, { "branches": [ { "category": "product_name", "name": "SUSE Linux", "product": { "name": "SUSE Linux", "product_id": "T002207", "product_identification_helper": { "cpe": "cpe:/o:suse:suse_linux:-" } } } ], "category": "vendor", "name": "SUSE" }, { "branches": [ { "branches": [ { "category": "product_version_range", "name": "\u003c7.0", "product": { "name": "Zabbix Zabbix \u003c7.0", "product_id": "T028602" } }, { "category": "product_version", "name": "7", "product": { "name": "Zabbix Zabbix 7.0", "product_id": "T028602-fixed", "product_identification_helper": { "cpe": "cpe:/a:zabbix:zabbix:7.0" } } }, { "category": "product_version_range", "name": "\u003c5.0.42rc1", "product": { "name": "Zabbix Zabbix \u003c5.0.42rc1", "product_id": "T032656" } }, { "category": "product_version", "name": "5.0.42rc1", "product": { "name": "Zabbix Zabbix 5.0.42rc1", "product_id": "T032656-fixed", "product_identification_helper": { "cpe": "cpe:/a:zabbix:zabbix:5.0.42rc1" } } } ], "category": "product_name", "name": "Zabbix" } ], "category": "vendor", "name": "Zabbix" } ] }, "vulnerabilities": [ { "cve": "CVE-2024-22119", "notes": [ { "category": "description", "text": "In Zabbix existiert eine Cross-Site Scripting Schwachstelle. HTML und Script-Eingaben werden in \"graph items select form\" nicht ordnungsgem\u00e4\u00df \u00fcberpr\u00fcft, bevor sie an den Benutzer zur\u00fcckgegeben werden. Ein entfernter, authentisierter Angreifer kann durch Ausnutzung dieser Schwachstelle beliebigen HTML- und Script-Code durch den Browser des Benutzers im Kontext der betroffenen Seite ausf\u00fchren. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "2951", "T002207", "T032656", "T028602" ] }, "release_date": "2024-02-08T23:00:00.000+00:00", "title": "CVE-2024-22119" } ] }
gsd-2024-22119
Vulnerability from gsd
Modified
2024-01-06 06:02
Details
The cause of vulnerability is improper validation of form input field “Name” on Graph page in Items section.
Aliases
{ "gsd": { "metadata": { "exploitCode": "unknown", "remediation": "unknown", "reportConfidence": "confirmed", "type": "vulnerability" }, "osvSchema": { "aliases": [ "CVE-2024-22119" ], "details": "The cause of vulnerability is improper validation of form input field \u201cName\u201d on Graph page in Items section.", "id": "GSD-2024-22119", "modified": "2024-01-06T06:02:13.735314Z", "schema_version": "1.4.0" } }, "namespaces": { "cve.org": { "CVE_data_meta": { "ASSIGNER": "security@zabbix.com", "ID": "CVE-2024-22119", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "Zabbix", "version": { "version_data": [ { "version_value": "not down converted", "x_cve_json_5_version_data": { "defaultStatus": "unaffected", "versions": [ { "changes": [ { "at": "5.0.40rc1", "status": "unaffected" } ], "lessThanOrEqual": "5.0.39 ", "status": "affected", "version": "5.0.0", "versionType": "git" }, { "changes": [ { "at": "6.0.24rc1", "status": "unaffected" } ], "lessThanOrEqual": "6.0.23", "status": "affected", "version": "6.0.0 ", "versionType": "git" }, { "changes": [ { "at": "6.4.9rc1", "status": "unaffected" } ], "lessThanOrEqual": "6.4.8", "status": "affected", "version": "6.4.0", "versionType": "git" }, { "changes": [ { "at": "7.0.0alpha8", "status": "unaffected" } ], "lessThanOrEqual": "7.0.0alpha7", "status": "affected", "version": "7.0.0alpha1", "versionType": "git" } ] } } ] } } ] }, "vendor_name": "Zabbix" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "The cause of vulnerability is improper validation of form input field \u201cName\u201d on Graph page in Items section." } ] }, "generator": { "engine": "Vulnogram 0.1.0-dev" }, "impact": { "cvss": [ { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "LOW", "baseScore": 5.5, "baseSeverity": "MEDIUM", "confidentialityImpact": "LOW", "integrityImpact": "LOW", "privilegesRequired": "LOW", "scope": "UNCHANGED", "userInteraction": "REQUIRED", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L", "version": "3.1" } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "cweId": "CWE-20", "lang": "eng", "value": "CWE-20 Improper Input Validation" } ] } ] }, "references": { "reference_data": [ { "name": "https://support.zabbix.com/browse/ZBX-24070", "refsource": "MISC", "url": "https://support.zabbix.com/browse/ZBX-24070" }, { "name": "https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html", "refsource": "MISC", "url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html" } ] }, "source": { "discovery": "INTERNAL" } }, "nvd.nist.gov": { "cve": { "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*", "matchCriteriaId": "2C94731C-B779-45AD-BBB4-E6F0D5A3E149", "versionEndExcluding": "5.0.40", "versionStartIncluding": "5.0.0", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*", "matchCriteriaId": "398840EF-B622-4395-8336-92ADABBBA142", "versionEndExcluding": "6.0.24", "versionStartIncluding": "6.0.0", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:*:*:*:*:*:*:*:*", "matchCriteriaId": "B6105048-6C2E-4638-9595-3BEB09D06442", "versionEndExcluding": "6.4.9", "versionStartIncluding": "6.4.0", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha1:*:*:*:*:*:*", "matchCriteriaId": "93EB5757-7F98-4428-9616-C30A647A6612", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha2:*:*:*:*:*:*", "matchCriteriaId": "DA00BDB5-433F-44E5-87AC-DA01C64B5DB3", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha3:*:*:*:*:*:*", "matchCriteriaId": "98C46C92-9D86-45CD-88FE-DFBB5502BB88", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha4:*:*:*:*:*:*", "matchCriteriaId": "B568E6DD-A6D1-4402-BB40-7DA2596A5BC8", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha5:*:*:*:*:*:*", "matchCriteriaId": "B9C3673B-8459-4C63-8E90-724D1D42A8BB", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha6:*:*:*:*:*:*", "matchCriteriaId": "7C9F6957-7526-4852-A579-DE556DBFAA97", "vulnerable": true }, { "criteria": "cpe:2.3:a:zabbix:zabbix:7.0.0:alpha7:*:*:*:*:*:*", "matchCriteriaId": "81A7A191-93DE-4C5D-963E-E8890FF7AACA", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "descriptions": [ { "lang": "en", "value": "The cause of vulnerability is improper validation of form input field \u201cName\u201d on Graph page in Items section." }, { "lang": "es", "value": "La causa de la vulnerabilidad es la validaci\u00f3n inadecuada del campo de entrada del formulario \"Nombre\" en la p\u00e1gina Gr\u00e1fico en la secci\u00f3n Elementos." } ], "id": "CVE-2024-22119", "lastModified": "2024-04-28T20:15:45.757", "metrics": { "cvssMetricV31": [ { "cvssData": { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "NONE", "baseScore": 5.4, "baseSeverity": "MEDIUM", "confidentialityImpact": "LOW", "integrityImpact": "LOW", "privilegesRequired": "LOW", "scope": "CHANGED", "userInteraction": "REQUIRED", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N", "version": "3.1" }, "exploitabilityScore": 2.3, "impactScore": 2.7, "source": "nvd@nist.gov", "type": "Primary" }, { "cvssData": { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "LOW", "baseScore": 5.5, "baseSeverity": "MEDIUM", "confidentialityImpact": "LOW", "integrityImpact": "LOW", "privilegesRequired": "LOW", "scope": "UNCHANGED", "userInteraction": "REQUIRED", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L", "version": "3.1" }, "exploitabilityScore": 2.1, "impactScore": 3.4, "source": "security@zabbix.com", "type": "Secondary" } ] }, "published": "2024-02-09T09:15:08.380", "references": [ { "source": "security@zabbix.com", "url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html" }, { "source": "security@zabbix.com", "tags": [ "Exploit", "Issue Tracking", "Patch", "Vendor Advisory" ], "url": "https://support.zabbix.com/browse/ZBX-24070" } ], "sourceIdentifier": "security@zabbix.com", "vulnStatus": "Modified", "weaknesses": [ { "description": [ { "lang": "en", "value": "CWE-79" } ], "source": "nvd@nist.gov", "type": "Primary" }, { "description": [ { "lang": "en", "value": "CWE-20" } ], "source": "security@zabbix.com", "type": "Secondary" } ] } } } }
ghsa-8w8q-863g-6gx9
Vulnerability from github
Published
2024-02-09 09:31
Modified
2024-04-28 21:30
Severity ?
VLAI Severity ?
Details
The cause of vulnerability is improper validation of form input field “Name” on Graph page in Items section.
{ "affected": [], "aliases": [ "CVE-2024-22119" ], "database_specific": { "cwe_ids": [ "CWE-20", "CWE-79" ], "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-09T09:15:08Z", "severity": "MODERATE" }, "details": "The cause of vulnerability is improper validation of form input field \u201cName\u201d on Graph page in Items section.", "id": "GHSA-8w8q-863g-6gx9", "modified": "2024-04-28T21:30:29Z", "published": "2024-02-09T09:31:31Z", "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-22119" }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00020.html" }, { "type": "WEB", "url": "https://support.zabbix.com/browse/ZBX-24070" } ], "schema_version": "1.4.0", "severity": [ { "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L", "type": "CVSS_V3" } ] }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…