CVE 5.8 MEDIUM

Agent builds for AIX vulnerable to library loading hijacking_CVE-2025-49642

5.8 / 10
MEDIUM
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N

Description

Library loading on AIX Zabbix Agent builds can be hijacked by local users with write access to the /home/cecuser directory.

Basic Information

ID CVE-2025-49642
Source Zabbix
Published Dec 1, 2025 at 13:03
Modified Dec 1, 2025 at 14:36

Affected Product

Vendor Zabbix
Product Zabbix
Version 6.0.0
Affected Versions Zabbix Zabbix 6.0.0
Zabbix Zabbix 7.0.0
Zabbix Zabbix 7.2.0

CWE Classification

References

๐Ÿ’ญ Join the Security Discussion

๐Ÿ”’ Your email address will not be published. Required fields are marked *

โš ๏ธ Please be respectful and constructive in your comments. Security discussions should remain professional.