Memory Leak Vulnerability in rsyslogd Daemon Service

Memory Leak Vulnerability in rsyslogd Daemon Service

CVE-2011-1489 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages were logged when multiple rulesets were used and some output batches contained messages belonging to more than one ruleset. A local attacker could cause denial of the rsyslogd daemon service via a log message belonging to more than one ruleset.

Learn more about our Web Application Penetration Testing UK.