Executive brief
Tanium Server, a platform used for managing and securing large-scale enterprise networks, is affected by a denial of service vulnerability. An attacker could exploit this flaw to crash the server or make it unresponsive, preventing administrators from managing their endpoints or responding to security incidents. The issue has been addressed in recent software updates, and organizations are encouraged to apply the latest patches to maintain operational availability.
Technical details
A denial of service vulnerability exists in Tanium Server due to improper handling of memory allocation (CWE-789). An unauthenticated, network-based attacker can trigger the allocation of an excessive amount of memory, potentially leading to resource exhaustion and a crash of the server process. The vulnerability is reachable over the network without user interaction or prior authentication. Tanium has released patches across multiple release branches, including 2025H1 (MR21), 2025H2 (MR11), and 2026H1 (MR3). Organizations should update to the specified versions or later to mitigate this risk.
Affected products
- Tanium Tanium Server 7.7.3.8298 (2025H1 Release) before Update MR21; 7.8.2.1198 (2025H2 Release) before Update MR11; 7.8.4.1327 (2026H1 Release) before Update MR3
Timeline
- 2026-07-08: advisory
- 2026-07-08: patched