Known vulnerabilities in rsyslog (Red Hat package)
Vendor:
Red Hat Inc.
Software:
rsyslog (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:rsyslog_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
8.2510.0-2.el9
8.2506.0-2.el9
8.2310.0-4.el9
8.2412.0-1.el9
4.6.2-3.el6_1.2
5.8.10-12.el6_10.1
8.1911.0-3.el8_2.1
8.2102.0-101.el9_0.1
8.24.0-57.el7_9.3
8.2102.0-7.el8_6.1
8.1911.0-7.el8_4.3
8.37.0-13.el8_1.1
8.1911.0-3.el8
8.24.0-52.el7
8.24.0-38.el7
7.4.7-7.el7_0
8.24.0-12.el7_4
8.24.0-41.el7_7
8.24.0-34.el7
5.8.10-12.el6
5.8.10-10.el6_6
5.8.10-9.el6_6
5.8.10-8.el6_5
5.8.10-8.el6
5.8.10-7.el6_4
5.8.10-6.el6
5.8.10-2.el6
4.6.2-12.el6
4.6.2-3.el6_1
4.6.2-3.el6
4.6.2-2.el6
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU62830 - Heap-based Buffer Overflow CVE-2022-24903 |
CWE-122 | High | 5.8.10-12.el6_10.1, 8.24.0-57.el7_9.3, 8.37.0-13.el8_1.1, 8.1911.0-3.el8_2.1, 8.1911.0-7.el8_4.3, 8.2102.0-7.el8_6.1, 8.2102.0-101.el9_0.1 | 05.05.2022 |
SB2022050524 SB2022050920 SB2022052425 and 45 more |
||
| #VU22771 - Memory corruption CVE-2019-17042 |
CWE-119 | High | 8.24.0-52.el7, 8.1911.0-3.el8 | 14.11.2019 |
SB2019111416 SB2019111417 SB2019100722 and 9 more |
||
| #VU22770 - Memory corruption CVE-2019-17041 |
CWE-119 | High | 8.24.0-52.el7, 8.1911.0-3.el8 | 14.11.2019 |
SB2019111416 SB2019111417 SB2019100722 and 9 more |