漏洞情报聚合

CVE-2026-19654 - A unauthenticated remote peer may lead rsyslogd to crash due to a flaw in the optional imptcp module. A crafted input sequence during oversize-frame recovery can cause an invalid internal message length and terminate rsyslogd. No confidentiality or integrity impact, privilege escalation, or code execution has been identified. imtcp and the default imptcp framing modes are not affected. - 漏洞详情

漏洞编号:CVE-2026-19654

风险等级:高危

漏洞来源:CVE

CVE 编号:CVE-2026-19654

CNNVD 编号:-

厂商/产品:rsyslog / rsyslog

影响范围:cpe:2.3:a:rsyslog:rsyslog:*:*:*:*:*:*:*:*

CWE:CWE-125

发布/更新时间:2026-08-12 / 2026-08-27

漏洞描述

A unauthenticated remote peer may lead rsyslogd to crash due to a flaw in the optional imptcp module. A crafted input sequence during oversize-frame recovery can cause an invalid internal message length and terminate rsyslogd. No confidentiality or integrity impact, privilege escalation, or code execution has been identified. imtcp and the default imptcp framing modes are not affected.

相关链接

相关漏洞

« 返回首页