ZeroHour

CVE-2018-16881

CVSS 3.1
7.5 high
EPSS
2%p82
Published
()
Modified
Description

A denial of service vulnerability was found in rsyslog in the imptcp module. An attacker could send a specially crafted message to the imptcp socket, which would cause rsyslog to crash. Versions before 8.27.0 are vulnerable.

Vendors
rsyslogredhatdebian
Products
rsyslog, virtualization manager, enterprise linux desktop, enterprise linux for ibm z systems, enterprise linux for power big endian, enterprise linux for power little endian, enterprise linux for scientific computing, enterprise linux server, enterprise linux workstation, virtualization, virtualization host, debian linux
Weakness
CWE-190
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.