CVE-2008-5617
Last modified
CVE-2008-5617 is a vulnerability of currently unknown severity. The ACL handling in rsyslog 3.12.1 to 3.20.0, 4.1.0, and 4.1.1 does not follow $AllowedSender directive, which allows remote attackers to bypass intended access restrictions and spoof log messages or create a large number of spurious messages.. EPSS estimates a 1.91% chance of exploitation in the next 30 days.
Description
The ACL handling in rsyslog 3.12.1 to 3.20.0, 4.1.0, and 4.1.1 does not follow $AllowedSender directive, which allows remote attackers to bypass intended access restrictions and spoof log messages or create a large number of spurious messages.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Rsyslog | Rsyslog | 3.12.1 | — |
| Rsyslog | Rsyslog | 3.12.2 | — |
| Rsyslog | Rsyslog | 3.12.3 | — |
| Rsyslog | Rsyslog | 3.12.4 | — |
| Rsyslog | Rsyslog | 3.12.5 | — |
| Rsyslog | Rsyslog | 3.13.0 | — |
| Rsyslog | Rsyslog | 3.15.0 | — |
| Rsyslog | Rsyslog | 3.15.1 | Beta |
| Rsyslog | Rsyslog | 3.17.0 | — |
| Rsyslog | Rsyslog | 3.17.1 | — |
| Rsyslog | Rsyslog | 3.17.4 | Beta |
| Rsyslog | Rsyslog | 3.17.5 | Beta |
| Rsyslog | Rsyslog | 3.19.0 | — |
| Rsyslog | Rsyslog | 3.19.1 | — |
| Rsyslog | Rsyslog | 3.19.2 | — |
| Rsyslog | Rsyslog | 3.19.3 | — |
| Rsyslog | Rsyslog | 3.19.4 | — |
| Rsyslog | Rsyslog | 3.19.5 | — |
| Rsyslog | Rsyslog | 3.19.6 | — |
| Rsyslog | Rsyslog | 3.19.7 | — |
| Rsyslog | Rsyslog | 3.19.8 | — |
| Rsyslog | Rsyslog | 3.19.9 | — |
| Rsyslog | Rsyslog | 3.19.10 | — |
| Rsyslog | Rsyslog | 3.19.11 | — |
| Rsyslog | Rsyslog | 3.19.12 | — |
| Rsyslog | Rsyslog | 3.20.0 | — |
| Rsyslog | Rsyslog | 4.1.0 | — |
| Rsyslog | Rsyslog | 4.1.1 | — |
References
- http://secunia.com/advisories/32857Vendor Advisory
- http://www.rsyslog.com/Article322.phtmlPatch, Vendor Advisory
- http://secunia.com/advisories/32857Vendor Advisory
- http://www.rsyslog.com/Article322.phtmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-5617?
How severe is CVE-2008-5617?
How do I fix CVE-2008-5617?
Are you affected by CVE-2008-5617?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
