imPC@ndo IT

Tracker / CVE-2023-37536

CVE-2023-37536

High 8.2

An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP request.

Affected products and versions

apache xerces-c\+\+
fedoraproject fedora
hcltech bigfix_platform · 10.0.0 → 10.0.10
hcltech bigfix_platform · 9.0.0 → 9.5.23

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References