CVE-2006-0743
Apache log4net format string vulnerability causes DoS
EPSS 6.2%
Description
Format string vulnerability in LocalSyslogAppender in Apache log4net 1.2.9 might allow remote attackers to cause a denial of service (memory corruption and termination) via unknown vectors.
How to fix CVE-2006-0743
To remediate CVE-2006-0743, upgrade the affected package to a fixed version below.
- NuGet/log4net—upgrade to 1.2.10 or later
Is CVE-2006-0743 being exploited?
Moderate — EPSS is 6.2%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 1.2.10