Lucene search

K
prionPRIOn knowledge basePRION:CVE-2008-5110
HistoryNov 17, 2008 - 10:21 p.m.

Security feature bypass

2008-11-1722:21:00
PRIOn knowledge base
www.prio-n.com
8

AI Score

6.3

Confidence

Low

EPSS

0.002

Percentile

59.3%

syslog-ng does not call chdir when it calls chroot, which might allow attackers to escape the intended jail. NOTE: this is only a vulnerability when a separate vulnerability is present. This flaw affects syslog-ng versions prior to and including 2.0.9.

AI Score

6.3

Confidence

Low

EPSS

0.002

Percentile

59.3%