[SECURITY] Fedora 22 Update: rsyslog-8.8.0-3.fc22

updates at fedoraproject.org updates at fedoraproject.org
Thu Jul 16 02:33:22 UTC 2015


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2015-11039
2015-07-03 16:08:52
--------------------------------------------------------------------------------

Name        : rsyslog
Product     : Fedora 22
Version     : 8.8.0
Release     : 3.fc22
URL         : http://www.rsyslog.com/
Summary     : Enhanced system logging and kernel message trapping daemon
Description :
Rsyslog is an enhanced, multi-threaded syslog daemon. It supports MySQL,
syslog/TCP, RFC 3195, permitted sender lists, filtering on any message part,
and fine grain output format control. It is compatible with stock sysklogd
and can be used as a drop-in replacement. Rsyslog is simple to set up, with
advanced features suitable for enterprise-class, encryption-protected syslog
relay chains.

--------------------------------------------------------------------------------
Update Information:

Besides other changes, this update mitigates this vulnerability:
https://access.redhat.com/security/cve/CVE-2015-3243

--------------------------------------------------------------------------------
ChangeLog:

* Thu Jul  2 2015 Tomas Heinrich <theinric at redhat.com> 8.8.0-3
- use the right macro to specify the default pidfile
  resolves: rhbz#1224972
- make logrotate tolerate missing log files
  resolves: rhbz#1205889
- set the default service umask to 0066
  resolves: rhbz#1228192
- add a patch to prevent a crash on empty messages
  resolves: rhbz#1224538
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1224538 - [abrt] rsyslog: SanitizeMsg(): rsyslogd killed by SIGSEGV
        https://bugzilla.redhat.com/show_bug.cgi?id=1224538
  [ 2 ] Bug #1224972 - rsyslog logrotate issue
        https://bugzilla.redhat.com/show_bug.cgi?id=1224972
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update rsyslog' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list