The vulnerability is caused by improper check for check if RDLENGTH does not overflow the buffer in response from DNS server.
zabbix zabbix-agent 7.0.0
zabbix zabbix-agent