Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rjhm-8rqf-6wp8

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Balabit Syslog-NG 1.4.x before 1.4.15, and 1.5.x before 1.5.20, when using template filenames or output, does not properly track the size of a buffer when constant characters are encountered during macro expansion, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.

Balabit Syslog-NG 1.4.x before 1.4.15, and 1.5.x before 1.5.20, when using template filenames or output, does not properly track the size of a buffer when constant characters are encountered during macro expansion, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.

EPSS

Процентиль: 91%
0.0653
Низкий

Дефекты

CWE-119

Связанные уязвимости

nvd
почти 23 года назад

Balabit Syslog-NG 1.4.x before 1.4.15, and 1.5.x before 1.5.20, when using template filenames or output, does not properly track the size of a buffer when constant characters are encountered during macro expansion, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.

debian
почти 23 года назад

Balabit Syslog-NG 1.4.x before 1.4.15, and 1.5.x before 1.5.20, when u ...

EPSS

Процентиль: 91%
0.0653
Низкий

Дефекты

CWE-119