Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-6437
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-6437

Description:
Balabit syslog-ng 2.0.x before 2.0.6 and 2.1.x before 2.1.8 allows remote attackers to cause a denial of service (crash) via a message with a timestamp that does not contain a trailing space, which triggers a NULL pointer dereference.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/39082

ST
  1019105

SAID
  Secunia Advisory: SA28118
  Secunia Advisory: SA28279
  Secunia Advisory: SA28483
  Secunia Advisory: SA28372

OSVDB
  39551

GENTOO
  http://security.gentoo.org/glsa/glsa-200712-19.xml

FEDORA

DEBIAN
  http://www.debian.org/security/2008/dsa-1464

CONFIRM

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/485181/100/0/threaded
  http://seclists.org/bugtraq/2007/Dec/0202.html

BID
  26897


Return to the previous page.