Synopsis: Moderate: rsyslog security and bug fix update
Advisory ID:       SLSA-2019:2110-1
Issue Date:        2019-08-06
CVE Numbers:       CVE-2018-16881
--

Security Fix(es):

* rsyslog: imptcp: integer overflow when Octet-Counted TCP Framing is
enabled (CVE-2018-16881)
--

SL7
  x86_64
    rsyslog-relp-8.24.0-38.el7.x86_64.rpm
    rsyslog-mysql-8.24.0-38.el7.x86_64.rpm
    rsyslog-gnutls-8.24.0-38.el7.x86_64.rpm
    rsyslog-gssapi-8.24.0-38.el7.x86_64.rpm
    rsyslog-8.24.0-38.el7.x86_64.rpm
    rsyslog-pgsql-8.24.0-38.el7.x86_64.rpm
    rsyslog-kafka-8.24.0-38.el7.x86_64.rpm
    rsyslog-mmjsonparse-8.24.0-38.el7.x86_64.rpm
    rsyslog-snmp-8.24.0-38.el7.x86_64.rpm
    rsyslog-libdbi-8.24.0-38.el7.x86_64.rpm
    rsyslog-mmaudit-8.24.0-38.el7.x86_64.rpm
    rsyslog-doc-8.24.0-38.el7.noarch.rpm
    rsyslog-mmkubernetes-8.24.0-38.el7.x86_64.rpm
    rsyslog-udpspoof-8.24.0-38.el7.x86_64.rpm
    rsyslog-mmsnmptrapd-8.24.0-38.el7.x86_64.rpm
    rsyslog-mmnormalize-8.24.0-38.el7.x86_64.rpm
    rsyslog-crypto-8.24.0-38.el7.x86_64.rpm
    rsyslog-elasticsearch-8.24.0-38.el7.x86_64.rpm
    rsyslog-debuginfo-8.24.0-38.el7.x86_64.rpm
  noarch
    rsyslog-doc-8.24.0-38.el7.noarch.rpm

- Scientific Linux Development Team

SciLinux: SLSA-2019-2110-1 Moderate: rsyslog on SL7.x x86_64

rsyslog: imptcp: integer overflow when Octet-Counted TCP Framing is enabled (CVE-2018-16881) SL7 x86_64 rsyslog-relp-8.24.0-38.el7.x86_64.rpm rsyslog-mysql-8.24.0-38.el7.x86_64.rpm...

Summary

Moderate: rsyslog security and bug fix update



Security Fixes

* rsyslog: imptcp: integer overflow when Octet-Counted TCP Framing is enabled (CVE-2018-16881)
SL7 x86_64 rsyslog-relp-8.24.0-38.el7.x86_64.rpm rsyslog-mysql-8.24.0-38.el7.x86_64.rpm rsyslog-gnutls-8.24.0-38.el7.x86_64.rpm rsyslog-gssapi-8.24.0-38.el7.x86_64.rpm rsyslog-8.24.0-38.el7.x86_64.rpm rsyslog-pgsql-8.24.0-38.el7.x86_64.rpm rsyslog-kafka-8.24.0-38.el7.x86_64.rpm rsyslog-mmjsonparse-8.24.0-38.el7.x86_64.rpm rsyslog-snmp-8.24.0-38.el7.x86_64.rpm rsyslog-libdbi-8.24.0-38.el7.x86_64.rpm rsyslog-mmaudit-8.24.0-38.el7.x86_64.rpm rsyslog-doc-8.24.0-38.el7.noarch.rpm rsyslog-mmkubernetes-8.24.0-38.el7.x86_64.rpm rsyslog-udpspoof-8.24.0-38.el7.x86_64.rpm rsyslog-mmsnmptrapd-8.24.0-38.el7.x86_64.rpm rsyslog-mmnormalize-8.24.0-38.el7.x86_64.rpm rsyslog-crypto-8.24.0-38.el7.x86_64.rpm rsyslog-elasticsearch-8.24.0-38.el7.x86_64.rpm rsyslog-debuginfo-8.24.0-38.el7.x86_64.rpm noarch rsyslog-doc-8.24.0-38.el7.noarch.rpm
- Scientific Linux Development Team

Severity
Advisory ID: SLSA-2019:2110-1
Issued Date: : 2019-08-06
CVE Numbers: CVE-2018-16881

Related News