Loading
Generated remediation guidance and an executive summary. No account required.
An integer overflow in the RFC3164 parser in One Identity syslog-ng 3.0 through 3.37 allows remote attackers to cause a Denial of Service via crafted syslog input that is mishandled by the tcp or network function. syslog-ng Premium Edition 7.0.30 and syslog-ng Store Box 6.10.0 are also affected.
Cite this page
CVE-2022-38725. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2022-38725
Use CWE-190, Oneidentity vendor hub and Syslog-Ng product page to widen CVE-2022-38725 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2008-5110, CVE-2020-8019 and CVE-2024-47619 for nearby disclosures in the same product family.