https://seclists.org/oss-sec/2026/q3/173: CVE-2026-61548: rsyslog mmpstrucdata stack overflow
Published Jul 20, 2026
·Updated
Affected Software
1 affected component
rsyslog Rsyslog>7.5.4<=8.2606.0
Frequently Asked Questions
1
What is the severity of CVE-2026-61548?
CVE-2026-61548 has a severity rating of High with a CVSS 3.1 score of 8.1.
2
How do I fix CVE-2026-61548?
To fix CVE-2026-61548, update rsyslog to version 8.2606.0 or later.
3
What versions of rsyslog are affected by CVE-2026-61548?
CVE-2026-61548 affects rsyslog versions 7.5.4 and later, prior to 8.2606.0.
4
What type of vulnerability is CVE-2026-61548?
CVE-2026-61548 is a stack-based buffer overflow vulnerability in the optional mmpstrucdata module of rsyslog.
5
Where can I find more information about CVE-2026-61548?
More information about CVE-2026-61548 is available in the GitHub advisory GHSA-8qmr-c66f-g368.