Lucene search

K
cvelistRedhatCVELIST:CVE-2008-5110
HistoryNov 17, 2008 - 10:00 p.m.

CVE-2008-5110

2008-11-1722:00:00
redhat
www.cve.org
4

AI Score

6

Confidence

Low

EPSS

0.002

Percentile

59.3%

syslog-ng does not call chdir when it calls chroot, which might allow attackers to escape the intended jail. NOTE: this is only a vulnerability when a separate vulnerability is present. This flaw affects syslog-ng versions prior to and including 2.0.9.

AI Score

6

Confidence

Low

EPSS

0.002

Percentile

59.3%