{ "dataType": "CVE_RECORD", "dataVersion": "5.2", "cveMetadata": { "cveId": "CVE-2026-47859", "assignerOrgId": "dcf2e128-44bd-42ed-91e8-88f912c1401d", "state": "PUBLISHED", "assignerShortName": "vmware", "dateReserved": "2026-05-20T10:00:55.156Z", "datePublished": "2026-08-26T23:28:45.659Z", "dateUpdated": "2026-08-27T14:48:52.190Z" }, "containers": { "cna": { "providerMetadata": { "orgId": "dcf2e128-44bd-42ed-91e8-88f912c1401d", "shortName": "vmware", "dateUpdated": "2026-08-26T23:28:45.659Z" }, "title": "Unbounded memory allocation in RFC6587SyslogDeserializer (octet-counted framing) — remote DoS", "problemTypes": [ { "descriptions": [ { "lang": "en", "description": "CWE-770 Allocation of Resources Without Limits or Throttling", "type": "CWE" } ] } ], "impacts": [ { "descriptions": [ { "lang": "en", "value": "RFC6587SyslogDeserializer, used by the Spring Integration syslog TCP inbound adapter to decode RFC 6587 / RFC 5424 frames, trusts the sender-supplied octet count of an octet-counted frame and allocates a byte array of exactly that size with no upper bound." } ] } ], "affected": [ { "vendor": "Spring", "product": "Spring Integration", "versions": [ { "status": "affected", "version": "7.1.0", "versionType": "custom" }, { "status": "affected", "version": "7.0.0", "lessThanOrEqual": "7.0.5", "versionType": "custom" }, { "status": "affected", "version": "6.5.0", "lessThanOrEqual": "6.5.10", "versionType": "custom" }, { "status": "affected", "version": "6.4.0", "lessThanOrEqual": "6.4.12", "versionType": "custom" }, { "status": "affected", "version": "0", "lessThanOrEqual": "5.5.21", "versionType": "custom" } ], "defaultStatus": "unaffected" } ], "descriptions": [ { "lang": "en", "value": "RFC6587SyslogDeserializer, used by the Spring Integration syslog TCP inbound adapter to decode RFC 6587 / RFC 5424 frames, trusts the sender-supplied octet count of an octet-counted frame and allocates a byte array of exactly that size with no upper bound.\nSpring Integration 7.1.0\nSpring Integration 7.0.0 - 7.0.5\nSpring Integration 6.5.0 - 6.5.10\nSpring Integration 6.4.0 - 6.4.12\nSpring Integration 5.5.21 and earlier", "supportingMedia": [ { "type": "text/html", "base64": false, "value": "

RFC6587SyslogDeserializer, used by the Spring Integration syslog TCP inbound adapter to decode RFC 6587 / RFC 5424 frames, trusts the sender-supplied octet count of an octet-counted frame and allocates a byte array of exactly that size with no upper bound.

Spring Integration 7.1.0
Spring Integration 7.0.0 - 7.0.5
Spring Integration 6.5.0 - 6.5.10
Spring Integration 6.4.0 - 6.4.12
Spring Integration 5.5.21 and earlier

" } ] } ], "references": [ { "url": "https://spring.io/security/cve-2026-47859" } ], "metrics": [ { "format": "CVSS", "scenarios": [ { "lang": "en", "value": "GENERAL" } ], "cvssV3_1": { "version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N", "baseScore": 5.4, "baseSeverity": "MEDIUM", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "LOW", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "LOW", "integrityImpact": "LOW", "availabilityImpact": "NONE" } } ], "source": { "discovery": "UNKNOWN" } }, "adp": [ { "problemTypes": [ { "descriptions": [ { "type": "CWE", "cweId": "CWE-770", "lang": "en", "description": "CWE-770 Allocation of Resources Without Limits or Throttling" } ] } ], "metrics": [ { "other": { "type": "ssvc", "content": { "timestamp": "2026-08-27T14:48:30.802768Z", "id": "CVE-2026-47859", "options": [ { "Exploitation": "none" }, { "Automatable": "no" }, { "Technical Impact": "partial" } ], "role": "CISA Coordinator", "version": "2.0.3" } } } ], "title": "CISA ADP Vulnrichment", "providerMetadata": { "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "shortName": "CISA-ADP", "dateUpdated": "2026-08-27T14:48:52.190Z" } } ] } }