--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2015-11039
2015-07-03 16:08:52
--------------------------------------------------------------------------------

Name        : rsyslog
Product     : Fedora 22
Version     : 8.8.0
Release     : 3.fc22
URL         : https://www.rsyslog.com/
Summary     : Enhanced system logging and kernel message trapping daemon
Description :
Rsyslog is an enhanced, multi-threaded syslog daemon. It supports MySQL,
syslog/TCP, RFC 3195, permitted sender lists, filtering on any message part,
and fine grain output format control. It is compatible with stock sysklogd
and can be used as a drop-in replacement. Rsyslog is simple to set up, with
advanced features suitable for enterprise-class, encryption-protected syslog
relay chains.

--------------------------------------------------------------------------------
Update Information:

Besides other changes, this update mitigates this vulnerability:
https://access.redhat.com/security/cve/CVE-2015-3243

--------------------------------------------------------------------------------
ChangeLog:

* Thu Jul  2 2015 Tomas Heinrich  8.8.0-3
- use the right macro to specify the default pidfile
  resolves: rhbz#1224972
- make logrotate tolerate missing log files
  resolves: rhbz#1205889
- set the default service umask to 0066
  resolves: rhbz#1228192
- add a patch to prevent a crash on empty messages
  resolves: rhbz#1224538
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1224538 - [abrt] rsyslog: SanitizeMsg(): rsyslogd killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1224538
  [ 2 ] Bug #1224972 - rsyslog logrotate issue
        https://bugzilla.redhat.com/show_bug.cgi?id=1224972
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update rsyslog' at the command line.
For more information, refer to "Managing Software with yum",
available at .

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/

Fedora 22: rsyslog Security Update

July 16, 2015
Besides other changes, this update mitigates this vulnerability: https://access.redhat.com/security/cve/CVE-2015-3243

Summary

Rsyslog is an enhanced, multi-threaded syslog daemon. It supports MySQL,

syslog/TCP, RFC 3195, permitted sender lists, filtering on any message part,

and fine grain output format control. It is compatible with stock sysklogd

and can be used as a drop-in replacement. Rsyslog is simple to set up, with

advanced features suitable for enterprise-class, encryption-protected syslog

relay chains.

Update Information:

Besides other changes, this update mitigates this vulnerability: https://access.redhat.com/security/cve/CVE-2015-3243

Change Log

* Thu Jul 2 2015 Tomas Heinrich 8.8.0-3 - use the right macro to specify the default pidfile resolves: rhbz#1224972 - make logrotate tolerate missing log files resolves: rhbz#1205889 - set the default service umask to 0066 resolves: rhbz#1228192 - add a patch to prevent a crash on empty messages resolves: rhbz#1224538

References

[ 1 ] Bug #1224538 - [abrt] rsyslog: SanitizeMsg(): rsyslogd killed by SIGSEGV https://bugzilla.redhat.com/show_bug.cgi?id=1224538 [ 2 ] Bug #1224972 - rsyslog logrotate issue https://bugzilla.redhat.com/show_bug.cgi?id=1224972

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update rsyslog' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
Name : rsyslog
Product : Fedora 22
Version : 8.8.0
Release : 3.fc22
URL : https://www.rsyslog.com/
Summary : Enhanced system logging and kernel message trapping daemon

Related News