Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
syslog-ng does not call chdir when it calls chroot, which might allow attackers to escape the intended jail. NOTE: this is only a vulnerability when a separate vulnerability is present. This flaw affects syslog-ng versions prior to and including 2.0.9.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Balabit syslog-ng 权限许可和访问控制问题漏洞
Vulnerability Description
One Identity syslog-ng是美国One Identity公司的一套开源的日志管理解决方案。该产品支持日志存储、日志收集和故障排除等功能。 Balabit syslog-ng中存在权限许可和访问控制问题漏洞。该漏洞源于网络系统或产品缺乏有效的权限许可和访问控制措施。
CVSS Information
N/A
Vulnerability Type
N/A