CVE-2002-1200
Balabit Syslog-NG 1.4.x before 1.4.15, and 1.5.x before 1.5.20, when using template filenames or output, does not properly track the size of a buffer when constant characters are encountered during macro expansion, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.
Scoring
- CVSS base score
- 0.26
- EPSS probability
- 6.53%
- Published
- 2004-09-01
- Last modified
- 2026-03-16
Affected products
- n/a n/a