suse · CVE-2016-6254

Quick triage

Priority: medium Published: 2021-05-30 13:44:31 UTC Updated: 2025-10-05 02:41:33 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-6254 severity moderate: SUSE including 194 source package names (collectd, collectd-4.9.4-0.25.1, …), 265 product×package rows across 9 product lines (SUSE Lifecycle Management Server 1.3, SUSE Linux Enterprise Module for Basesystem 15 SP2, … (9 product lines)): Fixed 233, Known Not Affected 32.

Description:

Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted network packet.

cvelogic Threat Intelligence