CVE-2014-3634
rsyslog: remote syslog PRI vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
rsyslog before 7.6.6 and 8.x before 8.4.1 and sysklogd 1.5 and earlier allows remote attackers to cause a denial of service (crash), possibly execute arbitrary code, or have other unspecified impact via a crafted priority (PRI) value that triggers an out-of-bounds array access.
rsyslog anterior a 7.6.6 y 8.x anterior a 8.4.1 y sysklogd 1.5 y anteriores permiten a atacantes remotos causar una denegación de servicio (caída), posiblemente ejecutar código arbitrario o tener otro impacto no especificado a través de un valor de prioridad (PRI) manipulado que provoca un acceso a array fuera de rango.
A flaw was found in the way rsyslog handled invalid log message priority values. In certain configurations, a local attacker, or a remote attacker able to connect to the rsyslog port, could use this flaw to crash the rsyslog daemon or, potentially in rsyslog 7.x, execute arbitrary code as the user running the rsyslog daemon.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2014-05-14 CVE Reserved
- 2014-10-01 CVE Published
- 2024-08-06 CVE Updated
- 2024-08-06 First Exploit
- 2024-10-31 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (20)
URL | Tag | Source |
---|---|---|
http://advisories.mageia.org/MGASA-2014-0411.html | X_refsource_confirm | |
http://linux.oracle.com/errata/ELSA-2014-1654 | X_refsource_confirm | |
http://secunia.com/advisories/61494 | Third Party Advisory | |
http://secunia.com/advisories/61720 | Third Party Advisory | |
http://secunia.com/advisories/61930 | Third Party Advisory | |
http://www.openwall.com/lists/oss-security/2014/09/30/15 | Mailing List | |
http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html | X_refsource_confirm |
URL | Date | SRC |
---|---|---|
http://www.rsyslog.com/remote-syslog-pri-vulnerability | 2024-08-06 |
URL | Date | SRC |
---|---|---|
http://www.openwall.com/lists/oss-security/2014/10/03/1 | 2016-10-18 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sysklogd Project Search vendor "Sysklogd Project" | Sysklogd Search vendor "Sysklogd Project" for product "Sysklogd" | <= 1.5 Search vendor "Sysklogd Project" for product "Sysklogd" and version " <= 1.5" | - |
Affected
| ||||||
Sysklogd Project Search vendor "Sysklogd Project" | Sysklogd Search vendor "Sysklogd Project" for product "Sysklogd" | 1.1 Search vendor "Sysklogd Project" for product "Sysklogd" and version "1.1" | - |
Affected
| ||||||
Sysklogd Project Search vendor "Sysklogd Project" | Sysklogd Search vendor "Sysklogd Project" for product "Sysklogd" | 1.2 Search vendor "Sysklogd Project" for product "Sysklogd" and version "1.2" | - |
Affected
| ||||||
Sysklogd Project Search vendor "Sysklogd Project" | Sysklogd Search vendor "Sysklogd Project" for product "Sysklogd" | 1.3 Search vendor "Sysklogd Project" for product "Sysklogd" and version "1.3" | - |
Affected
| ||||||
Sysklogd Project Search vendor "Sysklogd Project" | Sysklogd Search vendor "Sysklogd Project" for product "Sysklogd" | 1.4 Search vendor "Sysklogd Project" for product "Sysklogd" and version "1.4" | - |
Affected
| ||||||
Sysklogd Project Search vendor "Sysklogd Project" | Sysklogd Search vendor "Sysklogd Project" for product "Sysklogd" | 1.4.1 Search vendor "Sysklogd Project" for product "Sysklogd" and version "1.4.1" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | <= 7.6.5 Search vendor "Rsyslog" for product "Rsyslog" and version " <= 7.6.5" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.1.0 Search vendor "Rsyslog" for product "Rsyslog" and version "8.1.0" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.1.1 Search vendor "Rsyslog" for product "Rsyslog" and version "8.1.1" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.1.2 Search vendor "Rsyslog" for product "Rsyslog" and version "8.1.2" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.1.3 Search vendor "Rsyslog" for product "Rsyslog" and version "8.1.3" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.1.4 Search vendor "Rsyslog" for product "Rsyslog" and version "8.1.4" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.1.5 Search vendor "Rsyslog" for product "Rsyslog" and version "8.1.5" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.1.6 Search vendor "Rsyslog" for product "Rsyslog" and version "8.1.6" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.2.0 Search vendor "Rsyslog" for product "Rsyslog" and version "8.2.0" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.2.1 Search vendor "Rsyslog" for product "Rsyslog" and version "8.2.1" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.2.2 Search vendor "Rsyslog" for product "Rsyslog" and version "8.2.2" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.2.3 Search vendor "Rsyslog" for product "Rsyslog" and version "8.2.3" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.3.0 Search vendor "Rsyslog" for product "Rsyslog" and version "8.3.0" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.3.1 Search vendor "Rsyslog" for product "Rsyslog" and version "8.3.1" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.3.2 Search vendor "Rsyslog" for product "Rsyslog" and version "8.3.2" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.3.3 Search vendor "Rsyslog" for product "Rsyslog" and version "8.3.3" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.3.4 Search vendor "Rsyslog" for product "Rsyslog" and version "8.3.4" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.3.5 Search vendor "Rsyslog" for product "Rsyslog" and version "8.3.5" | - |
Affected
| ||||||
Rsyslog Search vendor "Rsyslog" | Rsyslog Search vendor "Rsyslog" for product "Rsyslog" | 8.4.0 Search vendor "Rsyslog" for product "Rsyslog" and version "8.4.0" | - |
Affected
|