CVE-2018-16881

Source
https://cve.org/CVERecord?id=CVE-2018-16881
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-16881.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2018-16881
Downstream
Related
Published
2019-01-25T18:29:00.257Z
Modified
2026-04-16T04:30:51.266696685Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

A denial of service vulnerability was found in rsyslog in the imptcp module. An attacker could send a specially crafted message to the imptcp socket, which would cause rsyslog to crash. Versions before 8.27.0 are vulnerable.

References

Affected packages

Git / github.com/rsyslog/rsyslog

Affected ranges

Type
GIT
Repo
https://github.com/rsyslog/rsyslog
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Database specific
{
    "versions": [
        {
            "introduced": "0"
        },
        {
            "fixed": "8.27.0"
        },
        {
            "introduced": "0"
        },
        {
            "last_affected": "4.3"
        }
    ]
}

Affected versions

Other
Branchpoint_Stable_1-0
sysklogd-141-import
v0-9-1
v0-9-3
v0-9-4
v0-9-6
v0-9-7
v0-9-8
v1-10-0
v1-10-1
v1-10-2
v1-11-0
v1-11-1
v1-12-0
v1-12-1
v1-12-2
v1-12-3
v1-13-0
v1-13-1
v1-13-2
v1-13-3
v1-13-4
v1-13-5
v1-14-0
v1-14-1
v1-14-2
v1-15-0
v1-15-1
v1-16-0
v1-17-0
v1-17-1
v1-17-2
v1-17-3
v1-17-4
v1-17-5
v1-17-6
v1-18-0
v1-18-1
v1-18-2
v1-19-0
v1-19-1
v1-19-10
v1-19-2
v1-19-3
v1-19-4
v1-19-5
v1-19-6
v1-19-6b
v1-19-7
v1-19-9
v1-20-0
v1-20-1
v3-10-0
v3-10-1
v3-10-1a
v3-10-2
v3-10-2a
v3-10-3
v3-11-0
v3-11-1
v3-11-2
v3-11-3
v3-11-4
v3-11-5
v3-11-6
v3-12-0
v3-12-1
v3-12-2
v3-12-3
v3-12-4
v3-12-5
v3-13-0-dev0
v3-15-0
v3.*
v3.15.1
v3.17.2
v3.17.3
v3.17.4
v3.17.5
v3.18.0
v3.19.10
v3.21.0
v3.21.1
v3.21.2
v3.21.3
v3.21.4
v3.21.5
v3.21.6
v4.*
v4.1.0
v4.1.1
v4.1.2
v4.1.3
v4.1.4
v4.3.0
v7.*
v7.5.1
v7.5.2
v7.5.3
v8.*
v8.1.6
v8.10.0
v8.12.0
v8.13.0
v8.18.0
v8.19.0
v8.20.0
v8.21.0
v8.22.0
v8.23.0
v8.24.0
v8.25.0
v8.26.0
v8.3.0
v8.3.1
v8.3.2
v8.3.3
v8.3.4
v8.3.5
v8.4.0
v8.4.1
v8.4.2
v8.9.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-16881.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "7.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "7.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "7.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "7.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "7.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "7.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "7.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "4.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "4.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "9.0"
            }
        ]
    }
]