Skip to main content

Vendor/product archive

oneidentity / syslog-ng CVEs

Beta · best-effort

7 CVEs tagged to oneidentity / syslog-ng1 Critical, 4 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2011-1951

Published Jul 11, 2011

lib/logmatcher.c in Balabit syslog-ng before 3.2.4, when the global flag is set and when using PCRE 8.12 and possibly other versions, allows remote attackers to cause a denial of…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5110

Published Nov 17, 2008

syslog-ng does not call chdir when it calls chroot, which might allow attackers to escape the intended jail. NOTE: this is only a vulnerability when a separate vulnerability is pr…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2002-1200

Published Oct 28, 2002

Balabit Syslog-NG 1.4.x before 1.4.15, and 1.5.x before 1.5.20, when using template filenames or output, does not properly track the size of a buffer when constant characters are…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1