CVE-2022-38725: Integer Overflow
An integer overflow in the RFC3164 parser in One Identity syslog-ng 3.0 through 3.37 allows remote attackers to cause a Denial of Service via crafted syslog input that is mishandled by the tcp or network function. syslog-ng Premium Edition 7.0.30 and syslog-ng Store Box 6.10.0 are also affected.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-38725?
CVE-2022-38725 is an integer overflow vulnerability in the RFC3164 parser in One Identity syslog-ng 3.0 through 3.37, which allows remote attackers to cause a Denial of Service via crafted syslog input.
Which software products are affected by CVE-2022-38725?
The affected software products include One Identity syslog-ng versions 3.0 through 3.37, syslog-ng Premium Edition 7.0.30, and syslog-ng Store Box 6.10.0.
How can CVE-2022-38725 be exploited?
CVE-2022-38725 can be exploited by remote attackers sending crafted syslog input that is mishandled by the tcp or network function in the syslog-ng software.
What is the severity of CVE-2022-38725?
CVE-2022-38725 has a severity rating of 7.5 (high).
How can I fix CVE-2022-38725?
To fix CVE-2022-38725, update to One Identity syslog-ng version 3.38.1 or later, syslog-ng Premium Edition version 7.0.32 or later, or syslog-ng Store Box version 6.0.5 or later.