Описание
Security update for rsyslog
This update for rsyslog fixes the following issues:
- CVE-2026-61548: parsing of crafted RFC 5424 messages in
mmpstrucdatacan lead to a stack buffer overflow (bsc#1272414). - Configuration-dependent issue in the optional
imptcpinput module can allow an unauthenticated remote peer to crashrsyslogd(bsc#1271910).
Список пакетов
SUSE Linux Enterprise Module for Basesystem 15 SP7
rsyslog-8.2406.0-150700.3.7.1
rsyslog-module-ossl-8.2406.0-150700.3.7.1
SUSE Linux Enterprise Module for Package Hub 15 SP7
rsyslog-module-kafka-8.2406.0-150700.3.7.1
SUSE Linux Enterprise Module for Server Applications 15 SP7
rsyslog-module-gssapi-8.2406.0-150700.3.7.1
rsyslog-module-gtls-8.2406.0-150700.3.7.1
rsyslog-module-mmnormalize-8.2406.0-150700.3.7.1
rsyslog-module-mysql-8.2406.0-150700.3.7.1
rsyslog-module-pgsql-8.2406.0-150700.3.7.1
rsyslog-module-relp-8.2406.0-150700.3.7.1
rsyslog-module-snmp-8.2406.0-150700.3.7.1
rsyslog-module-udpspoof-8.2406.0-150700.3.7.1
Ссылки
- Link for SUSE-SU-2026:3478-1
- E-Mail link for SUSE-SU-2026:3478-1
- SUSE Security Ratings
- SUSE Bug 1271910
- SUSE Bug 1272414
- SUSE CVE CVE-2026-61548 page
Описание
unknown
Затронутые продукты
SUSE Linux Enterprise Module for Basesystem 15 SP7:rsyslog-8.2406.0-150700.3.7.1
SUSE Linux Enterprise Module for Basesystem 15 SP7:rsyslog-module-ossl-8.2406.0-150700.3.7.1
SUSE Linux Enterprise Module for Package Hub 15 SP7:rsyslog-module-kafka-8.2406.0-150700.3.7.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:rsyslog-module-gssapi-8.2406.0-150700.3.7.1
Ссылки
- CVE-2026-61548
- SUSE Bug 1272414