Oval Definition:oval:org.mitre.oval:def:27159
Revision Date:2014-11-24Version:9
Title:RHSA-2014:1397: rsyslog security update (Important)
Description:The rsyslog packages provide an enhanced, multi-threaded syslog daemonthat supports writing to relational databases, syslog/TCP, RFC 3195,permitted sender lists, filtering on any message part, and fine grainedoutput format control.A flaw was found in the way rsyslog handled invalid log message priorityvalues. In certain configurations, a local attacker, or a remote attackerable to connect to the rsyslog port, could use this flaw to crash thersyslog daemon or, potentially, execute arbitrary code as the user runningthe rsyslog daemon. (CVE-2014-3634)Red Hat would like to thank Rainer Gerhards of rsyslog upstream forreporting this issue.All rsyslog users are advised to upgrade to these updated packages, whichcontain a backported patch to correct this issue. After installing theupdate, the rsyslog service will be restarted automatically.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2014:1397
CVE-2014-3634
RHSA-2014:1397-00
Platform(s):CentOS Linux 7
Red Hat Enterprise Linux 7
Product(s):rsyslog
Definition Synopsis
  • Redhat 7 or Centos 7 release
  • The operating system installed on the system is Red Hat Enterprise Linux 7
  • OR The operating system installed on the system is CentOS Linux 7.x
  • AND Packages section
  • rsyslog is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-crypto is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-doc is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-elasticsearch is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-gnutls is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-gssapi is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-libdbi is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-mmaudit is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-mmjsonparse is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-mmnormalize is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-mmsnmptrapd is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-mysql is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-pgsql is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-relp is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-snmp is earlier than 0:7.4.7-7.el7_0
  • OR rsyslog-udpspoof is earlier than 0:7.4.7-7.el7_0
  • BACK