OVMSA-2023-0010

OVMSA-2023-0010 - rsyslog security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2023-05-04

Description


[5.8.10-12.0.2]
- Back port fix for heap-based overflow in TCP syslog server
- Resolves CVE-2022-24903 [Orabug: 34226447]

[5.8.10-12.0.1]
- use setsid() to get a controlling session and process group [Orabug: 17346261] (Todd Vierling)


Related CVEs


CVE-2022-24903

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle VM 3 (x86_64) rsyslog-5.8.10-12.0.2.el6.src.rpmedad92b3b46a4eb8536656a440d5d3b941e54696af51a6e93b318781366c2f58-ovm3_x86_64_ELS
rsyslog-5.8.10-12.0.2.el6.x86_64.rpm25320828a09807aad7c9affad8368c8dc3a253465f169ab72745567f7c123473-ovm3_x86_64_ELS



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete