Balabit syslog-ng 2.0.x before 2.0.6 and 2.1.x before 2.1.8 allows remote attackers to cause a denial of service (crash) via a message with a timestamp that does not contain a trailing space, which triggers a NULL pointer dereference.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2007-12-19 21:46
Updated : 2018-10-15 21:54
NVD link : CVE-2007-6437
Mitre link : CVE-2007-6437
CVE.ORG link : CVE-2007-6437
JSON object : View
Products Affected
balabit
- syslog-ng_open_source_edition
- syslog-ng_premium_edition
CWE
CWE-20
Improper Input Validation