Oval Definition:oval:org.opensuse.security:def:201712588
Revision Date:2022-09-02Version:1
Title:CVE-2017-12588
Description:

The zmq3 input and output modules in rsyslog before 8.28.0 interpreted description fields as format strings, possibly allowing a format string attack with unspecified impact.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2017-12588
SUSE CVE-2017-12588
Platform(s):SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP5
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND rsyslog is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND rsyslog is not affected
  • OR Package Information
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND rsyslog is affected
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND rsyslog is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • OR SUSE Linux Enterprise Server 12 SP2 is installed
  • OR SUSE Linux Enterprise Server 12 SP3 is installed
  • AND rsyslog is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • OR SUSE Linux Enterprise Server 12 SP3 is installed
  • AND rsyslog is not affected
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND rsyslog is not affected
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND rsyslog is not affected
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
  • AND rsyslog is affected
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
  • AND Package Information
  • rsyslog is affected
  • OR rsyslog-diag-tools is affected
  • OR rsyslog-doc is affected
  • OR rsyslog-module-gssapi is affected
  • OR rsyslog-module-gtls is affected
  • OR rsyslog-module-mmnormalize is affected
  • OR rsyslog-module-mysql is affected
  • OR rsyslog-module-pgsql is affected
  • OR rsyslog-module-relp is affected
  • OR rsyslog-module-snmp is affected
  • OR rsyslog-module-udpspoof is affected
  • BACK