Oval Definition:oval:com.redhat.rhsa:def:20141671
Revision Date:2014-10-20Version:637
Title:RHSA-2014:1671: rsyslog5 and rsyslog security update (Moderate)
Description:The rsyslog packages provide an enhanced, multi-threaded syslog daemon that supports writing to relational databases, syslog/TCP, RFC 3195, permitted sender lists, filtering on any message part, and fine grained output format control.

  • A flaw was found in the way rsyslog handled invalid log message priority values. In certain configurations, a local attacker, or a remote attacker able to connect to the rsyslog port, could use this flaw to crash the rsyslog daemon. (CVE-2014-3634)

    Red Hat would like to thank Rainer Gerhards of rsyslog upstream for reporting this issue.

    All rsyslog5 and rsyslog users are advised to upgrade to these updated packages, which contain a backported patch to correct this issue. After installing the update, the rsyslog service will be restarted automatically.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2014-3634
    CVE-2014-3634
    RHSA-2014:1671
    RHSA-2014:1671-00
    RHSA-2014:1671-02
    Platform(s):Red Hat Enterprise Linux 5
    Red Hat Enterprise Linux 6
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • rsyslog5 is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5 is signed with Red Hat redhatrelease2 key
  • rsyslog5-gnutls is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5-gnutls is signed with Red Hat redhatrelease2 key
  • rsyslog5-gssapi is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5-gssapi is signed with Red Hat redhatrelease2 key
  • rsyslog5-mysql is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5-mysql is signed with Red Hat redhatrelease2 key
  • rsyslog5-pgsql is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5-pgsql is signed with Red Hat redhatrelease2 key
  • rsyslog5-snmp is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5-snmp is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 6 is installed
  • AND
  • rsyslog is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog is signed with Red Hat redhatrelease2 key
  • rsyslog-gnutls is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-gnutls is signed with Red Hat redhatrelease2 key
  • rsyslog-gssapi is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-gssapi is signed with Red Hat redhatrelease2 key
  • rsyslog-mysql is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-mysql is signed with Red Hat redhatrelease2 key
  • rsyslog-pgsql is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-pgsql is signed with Red Hat redhatrelease2 key
  • rsyslog-relp is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-relp is signed with Red Hat redhatrelease2 key
  • rsyslog-snmp is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-snmp is signed with Red Hat redhatrelease2 key
  • Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • rsyslog5 is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5 is signed with Red Hat redhatrelease key
  • rsyslog5-gnutls is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5-gnutls is signed with Red Hat redhatrelease key
  • rsyslog5-gssapi is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5-gssapi is signed with Red Hat redhatrelease key
  • rsyslog5-mysql is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5-mysql is signed with Red Hat redhatrelease key
  • rsyslog5-pgsql is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5-pgsql is signed with Red Hat redhatrelease key
  • rsyslog5-snmp is earlier than 0:5.8.12-5.el5_11
  • AND rsyslog5-snmp is signed with Red Hat redhatrelease key
  • OR Package Information
  • Red Hat Enterprise Linux 6 Client is installed
  • OR Red Hat Enterprise Linux 6 Server is installed
  • OR Red Hat Enterprise Linux 6 Workstation is installed
  • OR Red Hat Enterprise Linux 6 ComputeNode is installed
  • AND
  • rsyslog is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog is signed with Red Hat redhatrelease2 key
  • rsyslog-gnutls is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-gnutls is signed with Red Hat redhatrelease2 key
  • rsyslog-gssapi is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-gssapi is signed with Red Hat redhatrelease2 key
  • rsyslog-mysql is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-mysql is signed with Red Hat redhatrelease2 key
  • rsyslog-pgsql is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-pgsql is signed with Red Hat redhatrelease2 key
  • rsyslog-relp is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-relp is signed with Red Hat redhatrelease2 key
  • rsyslog-snmp is earlier than 0:5.8.10-9.el6_6
  • AND rsyslog-snmp is signed with Red Hat redhatrelease2 key
  • BACK