ALSA-2022:4799

Source
https://errata.almalinux.org/8/ALSA-2022-4799.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2022:4799.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2022:4799
Related
Published
2022-05-30T07:24:07Z
Modified
2022-05-30T11:39:08Z
Summary
Important: rsyslog security update
Details

The rsyslog packages provide an enhanced, multi-threaded syslog daemon. It supports MySQL, syslog/TCP, RFC 3195, permitted sender lists, filtering on any message part, and fine-grained control over output format.

Security Fix(es):

  • rsyslog: Heap-based overflow in TCP syslog server (CVE-2022-24903)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

Affected packages

AlmaLinux:8 / rsyslog

Package

Name
rsyslog

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-crypto

Package

Name
rsyslog-crypto

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-doc

Package

Name
rsyslog-doc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-elasticsearch

Package

Name
rsyslog-elasticsearch

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-gnutls

Package

Name
rsyslog-gnutls

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-gssapi

Package

Name
rsyslog-gssapi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-kafka

Package

Name
rsyslog-kafka

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-mmaudit

Package

Name
rsyslog-mmaudit

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-mmfields

Package

Name
rsyslog-mmfields

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-mmjsonparse

Package

Name
rsyslog-mmjsonparse

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-mmkubernetes

Package

Name
rsyslog-mmkubernetes

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-mmnormalize

Package

Name
rsyslog-mmnormalize

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-mmsnmptrapd

Package

Name
rsyslog-mmsnmptrapd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-mysql

Package

Name
rsyslog-mysql

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-omamqp1

Package

Name
rsyslog-omamqp1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-openssl

Package

Name
rsyslog-openssl

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-pgsql

Package

Name
rsyslog-pgsql

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-relp

Package

Name
rsyslog-relp

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-snmp

Package

Name
rsyslog-snmp

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8

AlmaLinux:8 / rsyslog-udpspoof

Package

Name
rsyslog-udpspoof

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.2102.0-7.el8