Denial of Service Vulnerability in Wazuh Open-Source Security Platform
CVE-2026-54084
5.3MEDIUM
What is CVE-2026-54084?
A vulnerability in the Wazuh open-source security platform can allow a malicious or man-in-the-middle enrollment manager to crash a Wazuh agent during the enrollment process. This occurs when a malformed key response with fewer than four fields is returned, leading to a NULL pointer dereference. The Wazuh agent's processing routine fails to validate the fields before using them, causing a termination of the agent process. This issue enables attackers exploiting rogue or intercepted enrollment requests to cause denial of service. The vulnerability affects Wazuh versions 4.0.0 through 4.14.6, but has been resolved in version 4.14.7.
Affected Version(s)
wazuh >= 4.0.0, < 4.14.7
