The reported vulnerability is a stack buffer overflow in the zbx_snmp_cache_handle_engineid function within the Zabbix server/proxy code. This issue occurs when copying data from session->securityEngineID to local_record.engineid without proper bounds checking.
| Software | From | Fixed in |
|---|---|---|
| zabbix / zabbix | 7.0.0 | 7.0.3 |