Demo Discussion
Forum Config Examples Contributions Vulnerabilities
  Discussion forum about ELOG, Page 93 of 806  Not logged in ELOG logo
New entries since:Thu Jan 1 01:00:00 1970
ID Date Icon Author Author Email Category OS ELOG Version Subject Text Attachments
  Draft   Wed Feb 19 17:43:34 2020 Question Gino Guenzburgergino.guenzburger@empa.chBug reportAll3.1.4Re: Find cannot find values with bracketsHi Stefan

we are running elog

  
  69114   Wed Feb 12 13:19:31 2020 Idea Stefan Rittstefan.ritt@psi.chInfoAll3.1.4ELOG Null Pointer Dereference Denial-of-Service VulnerabilityAn ELOG vulnerability has been reported,
thanks to Asif Akbar of Trend Micro Security
Researchworking with Trend Micro's Zero
  
  69113   Tue Feb 11 12:12:49 2020 Reply Stefan Rittstefan.ritt@psi.chBug reportLinux3.14 RPMRe: Elogd crashes on searchThanks for the detailed investiations and
report. Finally I could reproduce the problem
by having messages with a text body size
  
  69112   Tue Feb 4 18:33:56 2020 Reply Laurent Jean-Rigaudlollspam@free.frBug reportLinux3.14 RPMRe: Elogd crashes on searchStefan,

I cut the log in two parts w/o
modifying the content and the search runs.
  
  69111   Tue Feb 4 17:19:49 2020 Reply Stefan Rittstefan.ritt@psi.chBug reportLinux3.14 RPMRe: Elogd crashes on searchLooks like. Can you dig into the database
file and have a look at that entry? Or send
me the file containing that entry (together
  
  69110   Tue Feb 4 17:07:02 2020 Reply Laurent Jean-Rigaudlollspam@free.frBug reportLinux3.14 RPMRe: Elogd crashes on searchAt #5, there is message_id=426 .
You think it's this elog entries # 426
that is the source of crash  ?
  
  69109   Tue Feb 4 13:56:51 2020 Reply Laurent Jean-Rigaudlollspam@free.frBug reportLinux3.14 RPMRe: Elogd crashes on searchHi Stefan,

My previous dump is useless as
your elog-debuginfo rpm is stripped.
  
  69108   Mon Feb 3 13:31:15 2020 Reply Laurent Jean-Rigaudlollspam@free.frBug reportLinux3.14 RPMRe: Elogd crashes on searchHi Stefan.

I installed debuginfo and ran elogd
with gdb attached.
  
ELOG V3.1.5-3fb85fa6