PT-2014-1904 · Sysklogd+5 · Sysklogd+5

Mancha

+1

·

Published

2014-10-02

·

Updated

2024-06-15

·

CVE-2014-3683

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions rsyslog versions prior to 8.4.2 sysklogd version 1.5 and earlier
Description The issue affects the rsyslog package in Gentoo Linux and can lead to a disruption in the confidentiality, integrity, and availability of protected information. It is caused by an integer overflow when parsing PRI values, which can be exploited remotely. By sending a specially crafted message, an attacker can cause the service to crash, resulting in a denial of service.
Recommendations For rsyslog versions prior to 8.4.2, update to version 8.4.2 or later to resolve the issue. For sysklogd version 1.5 and earlier, consider upgrading to a version later than 1.5 to mitigate the risk. As a temporary workaround, consider restricting access to the PRI parsing functionality until a patch is available.

Exploit

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2014-2253
BDU:2015-09771
CVE-2014-3683
DLA-72-1
DSA-3047-1
MGASA-2014-0411
OPENSUSE-SU-2024:10498-1
USN-2381-1

Affected Products

Alt Linux
Ibm Aix
Suse
Ubuntu
Rsyslog
Sysklogd