rsyslog-8.24.0-38.el7
エラータID: AXSA:2019-4243:02
リリース日:
2019/09/12 Thursday - 08:58
題名:
rsyslog-8.24.0-38.el7
影響のあるチャネル:
Asianux Server 7 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- rsyslog の imptcp モジュールにはサービス拒否の問題があり、攻撃者が
巧妙に細工したメッセージを imptcp ソケットに送信すると、rsyslog が
クラッシュする脆弱性があります。(CVE-2018-16881)
一部CVEの翻訳文はJVNからの引用になります。
http://jvndb.jvn.jp/
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2018-16881
A denial of service vulnerability was found in rsyslog in the imptcp module. An attacker could send a specially crafted message to the imptcp socket, which would cause rsyslog to crash. Versions before 8.27.0 are vulnerable.
A denial of service vulnerability was found in rsyslog in the imptcp module. An attacker could send a specially crafted message to the imptcp socket, which would cause rsyslog to crash. Versions before 8.27.0 are vulnerable.
追加情報:
N/A
ダウンロード:
SRPMS
- rsyslog-8.24.0-38.el7.src.rpm
MD5: c3f5f99d67032334ea18af9e9157102b
SHA-256: e3ec437055db423a8a564990f72af53f9c9a0a017c93a31ad97e9f0f4e3c7e9e
Size: 6.57 MB
Asianux Server 7 for x86_64
- rsyslog-8.24.0-38.el7.x86_64.rpm
MD5: 913ebe6b49e1f9b114e148a08a4b15ce
SHA-256: 7fe3976299e9050f8db5fac3e66587a7c94ede8519d92eeb582b41349b7e6d59
Size: 615.04 kB - rsyslog-gnutls-8.24.0-38.el7.x86_64.rpm
MD5: f6a87524249c9c88dbd58f79445f6e32
SHA-256: 2c0708abd6a65eb22e991555c556142330ab53550ae33c424e7f5b65f8849a50
Size: 47.16 kB - rsyslog-gssapi-8.24.0-38.el7.x86_64.rpm
MD5: eac8cfc027d76ddbc3603337d3010647
SHA-256: 86f37678b55e0754e1149e5c48d8f0702c7ce7b9854413658c95040354fd97d3
Size: 50.90 kB - rsyslog-kafka-8.24.0-38.el7.x86_64.rpm
MD5: c710a7feffd40892859d64bfd64a250e
SHA-256: 8067a12db28797d1ab9552d520f65592ff6fc77e8faa6869ed4b41218336148d
Size: 43.97 kB - rsyslog-mmjsonparse-8.24.0-38.el7.x86_64.rpm
MD5: eedcf6af44c55a60a2405231468929ab
SHA-256: 619d9f356d28e5c8bfcbb7714bef9ec076a1961f9a6c4083c40d458ed0513551
Size: 39.58 kB - rsyslog-mysql-8.24.0-38.el7.x86_64.rpm
MD5: 229ea11109766598ef8fe3df94a09fde
SHA-256: bc6df13fd7789b27818692420d30ae72c8d1fa037d3f77b2608988d38b74fa51
Size: 41.10 kB - rsyslog-pgsql-8.24.0-38.el7.x86_64.rpm
MD5: adfb39781cdbe5403e45c460591079be
SHA-256: d02c3c1dd565f3d58a15515d39d8d2708165934e1b739b4150e7bf77e4db9249
Size: 39.54 kB - rsyslog-relp-8.24.0-38.el7.x86_64.rpm
MD5: 94f8d93162e8c54910d6c2a96cfe7d57
SHA-256: fa12c81c5b21f6b5fd23f0e9472e0398b865aadefb58634b734913e764101de4
Size: 48.26 kB