Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 41: 2025-0fc3d8b7bf moderate: syslog-ng certificate validation issue

fedora
Calendar Grey May 17, 2025
Dist Fedora Esm H88
Fedora 41 syslog-ng version 4.8.2 addresses CVE-2024-47619 to enhance validation for certificates. Safeguard your environment today!
update to 4.8.2 to fix CVE-2024-47619

Summary

syslog-ng is an enhanced log daemon, supporting a wide range of input and

output methods: syslog, unstructured text, message queues, databases (SQL

and NoSQL alike) and more.

Key features:

* receive and send RFC3164 and RFC5424 style syslog messages

* work with any kind of unstructured data

* receive and send JSON formatted messages

* classify and structure logs with builtin parsers (csv-parser(),

db-parser(), ...)

* normalize, crunch and process logs as they flow through the system

* hand on messages for further processing using message queues (like

AMQP), files or databases (like PostgreSQL or MongoDB).

Update Information:

update to 4.8.2 to fix CVE-2024-47619

Change Log

* Thu May 8 2025 Peter Czanik - 4.8.2-1 - update to 4.8.2, a bug fix release - fixes an inproper certificate validation problem (CVE-2024-47619) - fixes elasticsearch-http() and other drivers after a backwards incompatible fix in format-json - reliability and performance improvements in the S3 destination * Tue Feb 25 2025 Benjamin A. Beasley - 4.8.1-3 - Rebuilt for abseil-cpp-20250127.0 * Sun Jan 19 2025 Fedora Release Engineering - 4.8.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild

References


[ 1 ] Bug #2364863 - CVE-2024-47619 syslog-ng: tranport: TLS host name wildcard matching too lax [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2364863

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-0fc3d8b7bf' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Name: syslog-ng
Product: Fedora 41
Version: 4.8.2
Release: 1.fc41
Summary: Next-generation syslog server

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here