Apache log4net 中 SmtpPickupDirAppender 存在不当处理 Unicode 编码的漏洞。 当邮件文件写入器无法编码某些内容(例如未配对的 UTF-16 代理对)时,会导致写入操作抛出异常。在此情况下,批处理中的每一个缓冲事件(包括非问题事件)都会被丢弃,仅问题事件所携带的内容导致异常,但最终结果是整个批次的所有日志事件记录全部丢失,且在邮件拾取目录中可能残留一封不完整(截断)的邮件。如果攻击者能够控制数据并将其插入到日志消息中,则可阻止其他事件记录的保存,从而抑制日志记录。 仅使用
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Apache Software Foundation | Apache log4net | 1.2.9< 3.5.0 |
affected |
02e1e115435888485f2e28b414d267e39e799e07< 4d2e10f0908199604b4326f9df6d0b43b871e333 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache log4net | 1.2.9 ~ 3.5.0 | - |
|
| Apache Software Foundation | Apache log4net | 02e1e115435888485f2e28b414d267e39e799e07 ~ 4d2e10f0908199604b4326f9df6d0b43b871e333 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-94114 | 5.9 MEDIUM | Apache Commons BCEL: Nested Code/Record attributes drive unbounded parse-time recursion in |
| CVE-2026-105244 | 5.3 MEDIUM | Apache log4net: RemoteSyslogAppender silently deletes non-ASCII content |
| CVE-2026-105243 | 5.3 MEDIUM | Apache log4net: Oversize EventLogAppender record silently discarded |
| CVE-2026-105242 | 5.3 MEDIUM | Apache log4net: Request validation failure drops the event in the aspnet-request converter |
| CVE-2026-105240 | 5.3 MEDIUM | Apache log4net: NUL character truncates OutputDebugStringAppender records |
| CVE-2026-105239 | 5.3 MEDIUM | Apache log4net: NUL character truncates EventLogAppender records |
| CVE-2026-105111 | 4.7 MEDIUM | Apache Commons BCEL: Class2HTML emits unescaped class strings, enabling stored XSS |
No comments yet