CVE-2008-5110
EPSS 1.1%發布日:2008/11/17修改日:2026/4/28
描述
syslog-ng does not call chdir when it calls chroot, which might allow attackers to escape the intended jail. NOTE: this is only a vulnerability when a separate vulnerability is present. This flaw affects syslog-ng versions prior to and including 2.0.9.
受影響套件(1)
- Debian/syslog-ngfrom 0, < 2.0.9-4.1