Generated remediation guidance and an executive summary. No account required.
Balabit Syslog-NG 1.4.x before 1.4.15, and 1.5.x before 1.5.20, when using template filenames or output, does not properly track the size of a buffer when constant characters are encountered during macro expansion, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.
Cite this page
CVE-2002-1200. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2002-1200
Use CWE-119, Oneidentity vendor hub and Syslog-Ng product page to widen CVE-2002-1200 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2008-5110, CVE-2020-8019 and CVE-2024-47619 for nearby disclosures in the same product family.