PT-2016-6807 · Collectd+2 · Collectd+2

Emilien Gaspar

·

Publicado

2016-07-30

·

Atualizado

2021-03-15

·

CVE-2016-6254

CVSS v3.1

9.1

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions collectd versions prior to 5.4.3 collectd versions 5.x prior to 5.5.2
Description The issue is related to a heap-based buffer overflow in the parse packet function in network.c. This can be exploited by remote attackers through a crafted network packet, potentially leading to a denial of service (daemon crash) or possibly the execution of arbitrary code.
Recommendations For versions prior to 5.4.3, update to version 5.4.3 or later. For versions 5.x prior to 5.5.2, update to version 5.5.2 or later.

Correção

DoS

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2016-2096
CVE-2016-6254
DLA-575-1
DSA-3636-1
OPENSUSE-SU-2024:10462-1
SUSE-SU-2016:2187-1
USN-4793-1

Produtos afetados

Alt Linux
Ubuntu
Collectd