CVE-2008-5618

Publication date 17 December 2008

Last updated 24 July 2024


Ubuntu priority

imudp in rsyslog 4.x before 4.1.2, 3.21 before 3.21.9 beta, and 3.20 before 3.20.2 generates a message even when it is sent by an unauthorized sender, which allows remote attackers to cause a denial of service (disk consumption) via a large number of spurious messages.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
rsyslog 11.04 natty
Not affected
10.10 maverick
Not affected
10.04 LTS lucid
Not affected
9.10 karmic
Not affected
9.04 jaunty
Not affected
8.10 intrepid Ignored end of life, was needed
8.04 LTS hardy Ignored end of life
7.10 gutsy Not in release
6.06 LTS dapper Not in release