THREAT OPS › Threat News › CVE-2026-78002: rsyslog RainerScript replace() heap buffer overflow
CVE-2026-78002: rsyslog RainerScript replace() heap buffer overflow
<p>Posted by Rainer Gerhards on Aug 29</p>Hello,<br /> <br /> This is the public follow-up to the earlier embargoed notification to the<br /> distros list. The embargo ended on 2026-08-24. We apologize for the delayed<br /> oss-security posting.<br /> <br /> rsyslog contains a heap buffer overflow in the core RainerScript replace()<br /> function. The three-argument form of wrap() uses the same im
Indicators of compromise
- CVE-2026-78002cve
Original source: https://seclists.org/oss-sec/2026/q3/609