Package        : rsyslog
Version        : 8.4.2-1+deb8u3
CVE IDs        : CVE-2019-17041 CVE-2019-17042
Debian Bugs    : #942065 #942067

It was discovered that there were two vulnerabilities in the rsyslog
system/kernel logging daemon in the parsers for AIX and Cisco log
messages respectfully.

For Debian 8 "Jessie", these issue have been fixed in rsyslog version
8.4.2-1+deb8u3.

We recommend that you upgrade your rsyslog packages.


Regards,

- -- 
      ,''`.
     : :'  :     Chris Lamb
     `. `'`      lamby@debian.org / chris-lamb.co.uk
       `-

Debian LTS: DLA-1952-1: rsyslog security update

October 9, 2019
It was discovered that there were two vulnerabilities in the rsyslog system/kernel logging daemon in the parsers for AIX and Cisco log messages respectfully

Summary

We recommend that you upgrade your rsyslog packages.


Regards,

- --
,''`.
: :' : Chris Lamb
`. `'` lamby@debian.org / chris-lamb.co.uk
`-



Severity
Package : rsyslog
Version : 8.4.2-1+deb8u3

Related News