Vulnerability Description
The ACL handling in rsyslog 3.12.1 to 3.20.0, 4.1.0, and 4.1.1 does not follow $AllowedSender directive, which allows remote attackers to bypass intended access restrictions and spoof log messages or create a large number of spurious messages.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rsyslog | Rsyslog | 3.12.1 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/32857Vendor Advisory
- http://www.rsyslog.com/Article322.phtmlPatchVendor Advisory
- http://www.rsyslog.com/Article327.phtml
- http://www.rsyslog.com/Topic4.phtml
- http://www.securityfocus.com/bid/32630
- https://exchange.xforce.ibmcloud.com/vulnerabilities/47080
- http://secunia.com/advisories/32857Vendor Advisory
- http://www.rsyslog.com/Article322.phtmlPatchVendor Advisory
- http://www.rsyslog.com/Article327.phtml
- http://www.rsyslog.com/Topic4.phtml
- http://www.securityfocus.com/bid/32630
- https://exchange.xforce.ibmcloud.com/vulnerabilities/47080
FAQ
What is CVE-2008-5617?
CVE-2008-5617 is a vulnerability with a CVSS score of 8.5 (HIGH). The ACL handling in rsyslog 3.12.1 to 3.20.0, 4.1.0, and 4.1.1 does not follow $AllowedSender directive, which allows remote attackers to bypass intended access restrictions and spoof log messages or ...
How severe is CVE-2008-5617?
CVE-2008-5617 has been rated HIGH with a CVSS base score of 8.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-5617?
Check the references section above for vendor advisories and patch information. Affected products include: Rsyslog Rsyslog.