[CLSA-2022:1653917271] Fix CVE(s): CVE-2022-24903
Type:
security
Severity:
Important
Release date:
2022-05-30 13:27:51 UTC
Description:
* SECURITY UPDATE: heap buffer overflow - debian/patches/CVE-2022-24903.patch: introduces a bounds check to address a potential heap buffer overflow in plugins/imptcp/imptcp.c. - CVE-2022-24903
Updated packages:
  • rsyslog_8.16.0-1ubuntu3.1+tuxcare.els2_amd64.deb
    sha:0a413285bb7c2311c7bafc0e0584f09ec373382a
  • rsyslog-elasticsearch_8.16.0-1ubuntu3.1+tuxcare.els2_amd64.deb
    sha:adbd8235fe2c852264b1b6c6b08e693b565c8137
  • rsyslog-gnutls_8.16.0-1ubuntu3.1+tuxcare.els2_amd64.deb
    sha:4e8728bc91751756e183d24da498b4bbbbe86265
  • rsyslog-gssapi_8.16.0-1ubuntu3.1+tuxcare.els2_amd64.deb
    sha:3c860823bb2f8734cb01352eca64d9b26763d042
  • rsyslog-mysql_8.16.0-1ubuntu3.1+tuxcare.els2_amd64.deb
    sha:36fc4d4245ba00fa628fefa0d1daa9a8de52f07b
  • rsyslog-pgsql_8.16.0-1ubuntu3.1+tuxcare.els2_amd64.deb
    sha:e249fc70cd689bc8763de6050cc2464fed94efb8
  • rsyslog-relp_8.16.0-1ubuntu3.1+tuxcare.els2_amd64.deb
    sha:c954a2b833d1a118bad7dd79d8d90f5c49deb669
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.