Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4451 articles · 179459 vulns · 37/41 feeds (7d)
← Back to list
EST
PRE-CVEPATCHED
rsyslog · rsyslog

rsyslog imptcp regex-framing remote denial of service

56% confidence

Description

A configuration-dependent denial-of-service vulnerability in rsyslog's optional imptcp input module allows an unauthenticated remote peer to crash rsyslogd. The vulnerability exists in the non-default framing.delimiter.regex mode and can be triggered by a crafted input sequence during oversize-frame recovery, causing an invalid internal message length that terminates the rsyslogd daemon. No code execution, privilege escalation, or confidentiality/integrity impacts have been identified.

Affected Products

VendorProductVersions
rsyslogrsyslog8.36.0 through 8.2606.0

Related News (1 articles)

Tier C
oss-security3h ago
rsyslog v8.36.0 through v8.2606.0: imptcp regex-framing remote denial of service
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
Patch available
8.2608.0
PublishedJul 22, 2026
Last enriched3h ago
Tags
denial-of-serviceremoteconfiguration-dependentimptcpregex-framing
Trending Score27
Source articles1
Independent1
Info Completeness8/14
Missing: cve_id, epss, cwe, kev, exploit, iocs

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Pin to Dashboard

Verification

State: reported
Confidence: 56%

Vulnerability Timeline

CVE Published
Jul 22, 2026
Discovered by ZDM
Jul 22, 2026
Patch Available
Jul 22, 2026