← Terug naar overzicht

A heap buffer overflow vulnerability exists in rsyslog's RainerScript replace() function. An unauthenticated remote attacker can exploit this flaw by sending specially crafted syslog messages. The root cause is an incorrect buffer size calculation during string replacement operations, leading to memory corruption. Successful exploitation results in a denial of service (DoS) condition on the affected system. The vulnerability does not require authentication, making it particularly dangerous for internet-exposed syslog infrastructure. It has been reported via Red Hat's security advisory system and the rsyslog GitHub security advisories. A corresponding Bugzilla entry exists for tracking the fix. Organizations relying on rsyslog for log aggregation should prioritize patching this vulnerability promptly.

Affected products

  • rsyslog

Related CVE's

  • CVE-2026-78002

Categories

  • Network Infrastructure
  • Operating Systems