Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39692
HistoryMar 12, 2023 - 2:05 p.m.

Denial Of Service (DoS)

2023-03-1214:05:28
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17
syslog-ng
vulnerability
dos
integer overflow
rfc3164
parser
library
application crash
tcp
network function

EPSS

0.015

Percentile

87.1%

syslog-ng is vulnerable to Denial Of Service (DoS). The vulnerability exists due to the integer overflow in the RFC3164 parser in the library, which allows an attacker to cause an application crash through the syslog input that is mishandled by the TCP or network function.