-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2011-12282 2011-09-08 06:37:55 --------------------------------------------------------------------------------
Name : rsyslog Product : Fedora 14 Version : 4.6.3 Release : 3.fc14 URL : http://www.rsyslog.com/ Summary : Enhanced system logging and kernel message trapping daemon Description : Rsyslog is an enhanced, multi-threaded syslog daemon. It supports MySQL, syslog/TCP, RFC 3195, permitted sender lists, filtering on any message part, and fine grain output format control. It is compatible with stock sysklogd and can be used as a drop-in replacement. Rsyslog is simple to set up, with advanced features suitable for enterprise-class, encryption-protected syslog relay chains. -------------------------------------------------------------------------------- Update Information: updated package which fixes CVE-2011-3200 -------------------------------------------------------------------------------- ChangeLog: * Tue Sep 6 2011 Tomas Heinrich <[email protected]> 4.6.3-3 - add patch to resolve buffer overflow (CVE-2011-3200) * Thu Sep 9 2010 Tomas Heinrich <[email protected]> 4.6.3-2 - build rsyslog with PIE and RELRO -------------------------------------------------------------------------------- References: [ 1 ] Bug #727644 - CVE-2011-3200 rsyslog: parseLegacySyslogMsg off-by-two buffer overflow https://bugzilla.redhat.com/show_bug.cgi?id=727644 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update rsyslog' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list [email protected] https://admin.fedoraproject.org/mailman/listinfo/package-announce
