5

CVE-2008-6058

Syslserve 1.058 and earlier, and probably 1.059, allows remote attackers to cause a denial of service (hang) via a crafted UDP Syslog packet.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SyslserveSyslserve Version <= 1.059
SyslserveSyslserve Version1.01
SyslserveSyslserve Version1.02
SyslserveSyslserve Version1.03
SyslserveSyslserve Version1.04
SyslserveSyslserve Version1.05
SyslserveSyslserve Version1.051
SyslserveSyslserve Version1.052
SyslserveSyslserve Version1.053
SyslserveSyslserve Version1.054
SyslserveSyslserve Version1.055
SyslserveSyslserve Version1.056
SyslserveSyslserve Version1.058
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.4% 0.689
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

http://secunia.com/advisories/33566
Vendor Advisory
http://www.princeofnigeria.org/blogs/index.php/2009/01/15/syslserve-1-058-denial-of-service-vulner
URL Repurposed
http://www.securityfocus.com/bid/33311
http://www.syslserve.com/changelog.html