İçeriğe atla
Noroxi

rsyslog kayıtları

rsyslog üreticisine ait 20 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
1 · %5
Pre-auth RCE
5
Düzeltme kaydı olan
%95
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

20 kayıt
  • CVE-2018-1000140
    42Planlayın

    rsyslog librelp version 1.2.14 and earlier contains a Buffer Overflow vulnerability in the checking of x509 certificates from a peer that ca

    KritikCVSS 9,8Kavram kanıtıEPSS %9

    rsyslog · librelp23 Mar 2018

  • CVE-2019-17041
    40Planlayın

    An issue was discovered in Rsyslog v8.1908.0.

    KritikCVSS 9,8Kavram kanıtıEPSS %4

    rsyslog · rsyslog7 Eki 2019

  • CVE-2019-17042
    40Planlayın

    An issue was discovered in Rsyslog v8.1908.0.

    KritikCVSS 9,8İstismar yokEPSS %3

    rsyslog · rsyslog7 Eki 2019

  • CVE-2017-12588
    40Planlayın

    The zmq3 input and output modules in rsyslog before 8.28.0 interpreted description fields as format strings, possibly allowing a format stri

    KritikCVSS 9,8İstismar yokEPSS %3

    rsyslog · rsyslog6 Ağu 2017

  • CVE-2019-17040
    40Planlayın

    contrib/pmdb2diag/pmdb2diag.c in Rsyslog v8.1908.0 allows out-of-bounds access because the level length is mishandled.

    KritikCVSS 9,8İstismar yokEPSS %2

    rsyslog · rsyslog30 Eyl 2019

  • CVE-2008-5617
    35İzleyin

    The ACL handling in rsyslog 3.12.1 to 3.20.0, 4.1.0, and 4.1.1 does not follow $AllowedSender directive, which allows remote attackers to by

    YüksekCVSS 8,5İstismar yokEPSS %2

    rsyslog · rsyslog16 Ara 2008

  • CVE-2022-24903
    33İzleyin

    Buffer overflow in TCP syslog server (receiver) components in rsyslog

    YüksekCVSS 8,1Kavram kanıtıEPSS %4

    rsyslog · rsyslog5 May 2022

  • CVE-2014-3634
    32İzleyin

    rsyslog before 7.6.6 and 8.x before 8.4.1 and sysklogd 1.5 and earlier allows remote attackers to cause a denial of service (crash), possibl

    YüksekCVSS 7,5İstismar yokEPSS %8

    rsyslog · rsyslog1 Kas 2014

  • CVE-2018-16881
    31İzleyin

    A denial of service vulnerability was found in rsyslog in the imptcp module.

    YüksekCVSS 7,5İstismar yokEPSS %2

    rsyslog · rsyslog25 Oca 2019

  • CVE-2005-3074
    30İzleyin

    SQL injection vulnerability in rsyslogd in RSyslog before 1.0.1 and before 1.10.1 allows remote attackers to execute arbitrary SQL commands

    YüksekCVSS 7,5İstismar yokEPSS %1

    rsyslog · rsyslogd27 Eyl 2005

  • CVE-2026-19654
    30İzleyin

    Rsyslog: a configuration-dependent issue in rsyslog's optional imptcp input module can allow an unauthenticated remote peer to crash rsyslogd

    YüksekCVSS 7,5İstismar yokEPSS %0

    rsyslog · rsyslog12 Ağu 2026

  • CVE-2013-4758
    28İzleyin

    Double free vulnerability in the writeDataError function in the ElasticSearch plugin (omelasticsearch) in rsyslog before 7.4.2 and before 7.

    OrtaCVSS 6,8İstismar yokEPSS %2

    rsyslog · rsyslog4 Eki 2013

  • CVE-2011-3200
    26İzleyin

    Stack-based buffer overflow in the parseLegacySyslogMsg function in tools/syslogd.c in rsyslogd in rsyslog 4.6.x before 4.6.8 and 5.2.0 thro

    OrtaCVSS 5,0SilahlaştırılmışEPSS %21

    rsyslog · rsyslog6 Eyl 2011

  • CVE-2011-1488
    22İzleyin

    A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages are logged when $RepeatedMsgReduction was enabled.

    OrtaCVSS 5,5İstismar yokEPSS %0

    rsyslog · rsyslog13 Kas 2019

  • CVE-2011-1489
    22İzleyin

    A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages were logged when multiple rulesets were used and so

    OrtaCVSS 5,5İstismar yokEPSS %0

    rsyslog · rsyslog13 Kas 2019

  • CVE-2015-3243
    22İzleyin

    rsyslog uses weak permissions for generating log files, which allows local users to obtain sensitive information by reading files in /var/lo

    OrtaCVSS 5,5İstismar yokEPSS %0

    rsyslog · rsyslog25 Tem 2017

  • CVE-2011-1490
    22İzleyin

    A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages are logged when multiple rulesets were used and som

    OrtaCVSS 5,5İstismar yokEPSS %0

    rsyslog · rsyslog13 Kas 2019

  • CVE-2014-3683
    21İzleyin

    Integer overflow in rsyslog before 7.6.7 and 8.x before 8.4.2 and sysklogd 1.5 and earlier allows remote attackers to cause a denial of serv

    OrtaCVSS 5,0İstismar yokEPSS %5

    rsyslog · rsyslog1 Kas 2014

  • CVE-2008-5618
    20İzleyin

    imudp in rsyslog 4.x before 4.1.2, 3.21 before 3.21.9 beta, and 3.20 before 3.20.2 generates a message even when it is sent by an unauthoriz

    OrtaCVSS 5,0İstismar yokEPSS %1

    rsyslog · rsyslog16 Ara 2008

  • CVE-2011-4623
    8İzleyin

    Integer overflow in the rsCStrExtendBuf function in runtime/stringbuf.c in the imfile module in rsyslog 4.x before 4.6.6, 5.x before 5.7.4,

    DüşükCVSS 2,1İstismar yokEPSS %0

    rsyslog · rsyslog25 Eyl 2012