#VU17698 Input validation error in rsyslog - CVE-2018-16881
Published: February 14, 2019
rsyslog
rsyslog.com
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists in the imptcp module due to insufficient validation of user-supplied input. A remote attacker can send a specially crafted message to the imptcp socket that submits malicious input and cause the affected software to crash, resulting in a DoS condition.