Integer Overflow in rsyslog Allows Denial of Service via Large File
CVE-2011-4623
Currently unrated
What is CVE-2011-4623?
An integer overflow vulnerability exists in the rsCStrExtendBuf function of rsyslog, affecting versions prior to 4.6.6, 5.7.4, and 6.1.4. This issue allows local users to exploit the vulnerability by submitting a large file, which can cause a denial of service through a heap-based buffer overflow, leading to the daemon becoming unresponsive. Timely patching is essential to mitigate this risk and protect system integrity.
