PublicDate: 2007-12-19 21:46:00 UTC Candidate: CVE-2007-6437 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6437 Description: Balabit syslog-ng 2.0.x before 2.0.6 and 2.1.x before 2.1.8 allows remote attackers to cause a denial of service (crash) via a message with a timestamp that does not contain a trailing space, which triggers a NULL pointer dereference. Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/ubuntu/+source/syslog-ng/+bug/183389 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_syslog-ng: upstream_syslog-ng: released (2.0.6, 2.1.8) dapper_syslog-ng: ignored (reached end-of-life) edgy_syslog-ng: released (1.9.11-1.1ubuntu0.1) feisty_syslog-ng: released (2.0.0-1ubuntu0.1) gutsy_syslog-ng: released (2.0.0-1ubuntu1.1) hardy_syslog-ng: released (2.0.6-1) intrepid_syslog-ng: released (2.0.6-1) jaunty_syslog-ng: released (2.0.6-1) karmic_syslog-ng: released (2.0.6-1) devel_syslog-ng: released (2.0.6-1)