Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-3683

Опубликовано: 02 нояб. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

Integer overflow in rsyslog before 7.6.7 and 8.x before 8.4.2 and sysklogd 1.5 and earlier allows remote attackers to cause a denial of service (crash) via a large priority (PRI) value. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-3634.

РелизСтатусПримечание
devel

released

7.4.4-1ubuntu11
esm-infra-legacy/trusty

released

7.4.4-1ubuntu2.3
esm-infra/xenial

released

7.4.4-1ubuntu11
lucid

released

4.2.0-2ubuntu8.3
precise

released

5.8.6-1ubuntu8.9
precise/esm

not-affected

5.8.6-1ubuntu8.9
trusty

released

7.4.4-1ubuntu2.3
trusty/esm

released

7.4.4-1ubuntu2.3
upstream

released

8.4.2,7.6.7
utopic

released

7.4.4-1ubuntu11

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed
trusty

DNE

trusty/esm

DNE

upstream

needs-triage

utopic

DNE

vivid

DNE

Показывать по

EPSS

Процентиль: 84%
0.02185
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
больше 11 лет назад

Integer overflow in rsyslog before 7.6.7 and 8.x before 8.4.2 and sysklogd 1.5 and earlier allows remote attackers to cause a denial of service (crash) via a large priority (PRI) value. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-3634.

nvd
больше 11 лет назад

Integer overflow in rsyslog before 7.6.7 and 8.x before 8.4.2 and sysklogd 1.5 and earlier allows remote attackers to cause a denial of service (crash) via a large priority (PRI) value. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-3634.

debian
больше 11 лет назад

Integer overflow in rsyslog before 7.6.7 and 8.x before 8.4.2 and sysk ...

github
больше 3 лет назад

Integer overflow in rsyslog before 7.6.7 and 8.x before 8.4.2 and sysklogd 1.5 and earlier allows remote attackers to cause a denial of service (crash) via a large priority (PRI) value. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-3634.

fstec
около 11 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 84%
0.02185
Низкий

5 Medium

CVSS2