MGASA-2022-0165 - Updated rsyslog packages fix security vulnerability

Publication date: 08 May 2022
URL: https://advisories.mageia.org/MGASA-2022-0165.html
Type: security
Affected Mageia releases: 8
CVE: CVE-2022-24903

Potential heap buffer overflow in TCP syslog server (receiver) components 
(CVE-2022-24903)

References:
- https://bugs.mageia.org/show_bug.cgi?id=30383
- https://github.com/rsyslog/rsyslog/security/advisories/GHSA-ggw7-xr6h-mmr8
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-24903

SRPMS:
- 8/core/rsyslog-8.2204.1-1.mga8

Mageia 2022-0165: rsyslog security update

Potential heap buffer overflow in TCP syslog server (receiver) components (CVE-2022-24903) References: - https://bugs.mageia.org/show_bug.cgi?id=30383

Summary

Potential heap buffer overflow in TCP syslog server (receiver) components (CVE-2022-24903)

References

- https://bugs.mageia.org/show_bug.cgi?id=30383

- https://github.com/rsyslog/rsyslog/security/advisories/GHSA-ggw7-xr6h-mmr8

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-24903

Resolution

MGASA-2022-0165 - Updated rsyslog packages fix security vulnerability

SRPMS

- 8/core/rsyslog-8.2204.1-1.mga8

Severity
Publication date: 08 May 2022
URL: https://advisories.mageia.org/MGASA-2022-0165.html
Type: security
CVE: CVE-2022-24903

Related News