CVE-2011-4623
Publication date 23 December 2011
Last updated 24 July 2024
Ubuntu priority
Integer overflow in the rsCStrExtendBuf function in runtime/stringbuf.c in the imfile module in rsyslog 4.x before 4.6.6, 5.x before 5.7.4, and 6.x before 6.1.4 allows local users to cause a denial of service (daemon hang) via a large file, which triggers a heap-based buffer overflow.
Status
Package | Ubuntu Release | Status |
---|---|---|
rsyslog | ||
Notes
Patch details
Package | Patch details |
---|---|
rsyslog |
References
Related Ubuntu Security Notices (USN)
- USN-1338-1
- Rsyslog vulnerability
- 23 January 2012