]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/commit
sysklogd: Update to 1.5.1
authorMatthias Fischer <matthias.fischer@ipfire.org>
Sun, 29 Jan 2017 13:37:43 +0000 (14:37 +0100)
committerMichael Tremer <michael.tremer@ipfire.org>
Sun, 29 Jan 2017 19:30:13 +0000 (19:30 +0000)
commit8d07810dcefece495e8f3d321cb85e22ae5c6bd1
tree329e27bfbdee687421f5481963979d0e746fd2f0
parenta8f9804a76e4a7cda74e45381a88034ea4c16701
sysklogd: Update to 1.5.1

...and now to something completely different... ;-)

Changelog:

- Bugfix against invalid PRI values (CVE-2014-3634)

CVE-2014-3634:
"...sysklogd 1.5 and earlier allows remote attackers to cause a
denial of service (crash), possibly execute arbitrary code,
or have other unspecified impact via a crafted priority (PRI)
value that triggers an out-of-bounds array access."

Nothing good for a firewall...and besides, 'sysklogd' wasn't updated since 2010.

Best,
Matthias

Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
config/rootfiles/common/sysklogd
lfs/sysklogd