DSA-4151 librelp – security update

Bas van Schaik and Kevin Backhouse discovered a stack-based bufferoverflow vulnerability in librelp, a library providing reliable eventlogging over the network, triggered while checking x509 certificatesfrom a peer. A remote attacker able to connect to rsyslog can takeadvantage of this flaw for remote code execution by sending a speciallycrafted x509 certificate. More info: https://www.debian.org/security/2018/dsa-4151

Kernel vulnerability CVE-2018-8822

Kernel vulnerability CVE-2018-8822. Security Advisory. Security Advisory Description. Incorrect buffer length handling in ... More info: https://support.f5.com/csp/article/K81859243
Translate »