CVE-2016-6254
published 2016-08-19CVE-2016-6254: Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers to cause a denial of…
PriorityP352critical9.1CVSS 3.0
AVNACLPRNUINSUCNIHAH
EPSS
5.70%
92.1th percentile
Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted network packet.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| collectd | collectd | >= 0 < 5.5.2-1 | 5.5.2-1 |
| collectd | collectd | >= 0 < 5.5.2-1 | 5.5.2-1 |
| collectd | collectd | >= 0 < 5.5.2-1 | 5.5.2-1 |
| collectd | collectd | >= 0 < 5.5.2-1 | 5.5.2-1 |
| collectd | collectd | >= 0 < 5.4.0-3ubuntu2.2+esm1 | 5.4.0-3ubuntu2.2+esm1 |
| collectd | collectd | >= 0 < 5.5.1-1ubuntu0.1~esm1 | 5.5.1-1ubuntu0.1~esm1 |
| collectd | collectd | >= 5.4.0 < 5.4.3 | 5.4.3 |
| collectd | collectd | >= 5.5.0 < 5.5.2 | 5.5.2 |
| debian | collectd | < collectd 5.5.2-1 (bookworm) | collectd 5.5.2-1 (bookworm) |
| debian | debian_linux | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
CVSS provenance
nvdv3.09.1CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:P
osv9.1CRITICAL
vendor_debian9.1CRITICAL
vendor_redhat9.1CRITICAL
vendor_ubuntu9.1CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
collectd vulnerabilities
vendor_ubuntu·2021-03-15·CVSS 9.1
CVE-2017-16820 [CRITICAL] collectd vulnerabilities
Title: collectd vulnerabilities
Summary: Several security issues were fixed in collectd.
It was discovered that collectd mishandled certain malformed packets. A
remote attacker could use this vulnerability to cause collectd to crash or
possibly execute arbitrary code. (CVE-2016-6254)
It was discovered that collectd failed to handle certain input. An attacker
could use this vulnerability to cause collectd to crash. (CVE-2017-16820)
It was discovered that collectd mishandles certain malformed network
packets. A remote attacker could use this vulnerability to cause a Denial of
Service or consume system resources. (CVE-2017-7401)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
collectd: heap overflow in the network plugin
vendor_redhat·2016-07-26·CVSS 9.1
CVE-2016-6254 [CRITICAL] CWE-122 collectd: heap overflow in the network plugin
collectd: heap overflow in the network plugin
Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted network packet.
A heap-based buffer overflow flaw was found in collectd's network plugin. The flaw allowed a remote attacker to crash the collectd daemon (denial of service) or possibly execute remote code using a crafted network packet. For this flaw to be exploited, the network plugin must be enabled.
Package: collectd (Red Hat Enterprise Linux OpenStack Platform 7 (Kilo) Operational Tools) - Will not fix
Package: collectd (Red Hat OpenStack Platform 10 (Newton) Operational Tools) - Not affected
Package: colle
Debian
CVE-2016-6254: collectd - Heap-based buffer overflow in the parse_packet function in network.c in collectd...
vendor_debian·2016·CVSS 9.1
CVE-2016-6254 [CRITICAL] CVE-2016-6254: collectd - Heap-based buffer overflow in the parse_packet function in network.c in collectd...
Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted network packet.
Scope: local
bookworm: resolved (fixed in 5.5.2-1)
bullseye: resolved (fixed in 5.5.2-1)
forky: resolved (fixed in 5.5.2-1)
sid: resolved (fixed in 5.5.2-1)
trixie: resolved (fixed in 5.5.2-1)
GHSA
GHSA-w8rr-j32h-prm7: Heap-based buffer overflow in the parse_packet function in network
ghsa_unreviewed·2022-05-14
CVE-2016-6254 [CRITICAL] CWE-119 GHSA-w8rr-j32h-prm7: Heap-based buffer overflow in the parse_packet function in network
Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted network packet.
OSV
collectd vulnerabilities
osv·2021-03-15·CVSS 9.1
CVE-2016-6254 [CRITICAL] collectd vulnerabilities
collectd vulnerabilities
It was discovered that collectd mishandled certain malformed packets. A
remote attacker could use this vulnerability to cause collectd to crash or
possibly execute arbitrary code. (CVE-2016-6254)
It was discovered that collectd failed to handle certain input. An attacker
could use this vulnerability to cause collectd to crash. (CVE-2017-16820)
It was discovered that collectd mishandles certain malformed network
packets. A remote attacker could use this vulnerability to cause a Denial of
Service or consume system resources. (CVE-2017-7401)
OSV
CVE-2016-6254: Heap-based buffer overflow in the parse_packet function in network
osv·2016-08-19·CVSS 9.1
CVE-2016-6254 [CRITICAL] CVE-2016-6254: Heap-based buffer overflow in the parse_packet function in network
Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted network packet.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-6254 collectd: heap overflow in the network plugin [epel-all]
bugzilla·2016-07-27·CVSS 9.1
CVE-2016-6254 [CRITICAL] CVE-2016-6254 collectd: heap overflow in the network plugin [epel-all]
CVE-2016-6254 collectd: heap overflow in the network plugin [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fe
Bugzilla
CVE-2016-6254 collectd: heap overflow in the network plugin
bugzilla·2016-07-27·CVSS 9.1
CVE-2016-6254 [CRITICAL] CVE-2016-6254 collectd: heap overflow in the network plugin
CVE-2016-6254 collectd: heap overflow in the network plugin
The following flaw was found in collectd:
Emilien Gaspar has identified a heap overflow in collectd's network plugin which can be triggered remotely and is potentially exploitable. The identifier CVE-2016-6254 has been assigned to this issue.
This issue has been fixed in the released 5.5.2 and 5.4.3.
Upstream patches:
https://github.com/collectd/collectd/commit/b589096f907052b3a4da2b9ccc9b0e2e888dfc18
https://github.com/collectd/collectd/commit/8b4fed9940e02138b7e273e56863df03d1a39ef7
The second patch is unrelated to CVE-2016-6254. It fixes an initialization issue with libgcrypt which could theoretically lead to a half-initialized library being used.
Discussion:
Created collectd tracking bugs for this issue:
Affects: fedo
Bugzilla
CVE-2016-6254 collectd: heap overflow in the network plugin [fedora-all]
bugzilla·2016-07-27·CVSS 9.1
CVE-2016-6254 [CRITICAL] CVE-2016-6254 collectd: heap overflow in the network plugin [fedora-all]
CVE-2016-6254 collectd: heap overflow in the network plugin [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedor
http://collectd.org/news.shtmlhttp://www.debian.org/security/2016/dsa-3636https://github.com/collectd/collectd/commit/b589096f907052b3a4da2b9ccc9b0e2e888dfc18https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CM4W5SJ4OTBGINGIN4NJLXCUZAZANO6J/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UIZ5UXDOB7BA5NGE2F2I2BL4K6763DHW/http://collectd.org/news.shtmlhttp://www.debian.org/security/2016/dsa-3636https://github.com/collectd/collectd/commit/b589096f907052b3a4da2b9ccc9b0e2e888dfc18https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CM4W5SJ4OTBGINGIN4NJLXCUZAZANO6J/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UIZ5UXDOB7BA5NGE2F2I2BL4K6763DHW/
2016-08-19
Published