contrib/pmdb2diag/pmdb2diag.c in Rsyslog v8.1908.0 allows out-of-bounds access because the level length is mishandled. Reference: https://github.com/rsyslog/rsyslog/pull/3875
Created rsyslog tracking bugs for this issue: Affects: fedora-all [bug 1766642]
Upstream commit: https://github.com/rsyslog/rsyslog/pull/3875/commits/b0894088b680666035a3418326e13bc99d4fed49
This flaw affects the pmdb2diag.c code file which was introduced in rsyslog-8.1903.0 which was released on 2019-03-05. Older versions of rsyslog are not affected by this flaw.