CVE-2011-1155

Gentoo Logrotate < 3.7.9 - Resource Management Error

Title source: rule

Description

The writeState function in logrotate.c in logrotate 3.7.9 and earlier might allow context-dependent attackers to cause a denial of service (rotation outage) via a (1) \n (newline) or (2) \ (backslash) character in a log filename, as demonstrated by a filename that is automatically constructed on the basis of a hostname or virtual machine name.

Scores

EPSS 0.0010
EPSS Percentile 27.0%

Classification

CWE
CWE-399
Status draft

Affected Products (14)

gentoo/logrotate < 3.7.9
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate
gentoo/logrotate

Timeline

Published Mar 30, 2011
Tracked Since Feb 18, 2026