Vulnerabilities > CVE-2020-6582 - Incorrect Conversion between Numeric Types vulnerability in multiple products

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
nagios
fedoraproject
CWE-681

Summary

Nagios NRPE 3.2.1 has a Heap-Based Buffer Overflow, as demonstrated by interpretation of a small negative number as a large positive number during a bzero call.

Vulnerable Configurations

Part Description Count
Application
Nagios
1
OS
Fedoraproject
1