[USN-6746-2] Google Guest Agent and Google OS Config Agent vulnerability

Affected Packages 2
CVEs 1

Google Guest Agent and OS Config Agent could be made to crash if it open a specially crafted JSON.

USN-6746-1 fixed vulnerabilities in Google Guest Agent and Google
OS Config Agent. This update provides the corresponding update for
Ubuntu 24.04 LTS.

Original advisory details:

It was discovered that Google Guest Agent and Google OS Config Agent incorrectly
handled certain JSON files. An attacker could possibly use this issue to
cause a denial of service.

Package Affected Version
pkg:deb/ubuntu/google-osconfig-agent?distro=noble < 20240320.00-0ubuntu1~24.04.1
pkg:deb/ubuntu/google-guest-agent?distro=noble < 20240213.00-0ubuntu3.1
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/google-osconfig-agent?distro=noble ubuntu google-osconfig-agent < 20240320.00-0ubuntu1~24.04.1 noble
Affected pkg:deb/ubuntu/google-guest-agent?distro=noble ubuntu google-guest-agent < 20240213.00-0ubuntu3.1 noble
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...