Changelog for 6.2.0 (v6-stable)

Monday, January 9th, 2012

ChangeLog (from 6.1.12 to 6.2.0):

  • bugfix (kind of): removed numerical part from pri-text see v6 compatibility document for reasons
  • bugfix: race condition when extracting program name, APPNAME, structured data and PROCID (RFC5424 fields) could lead to invalid characters e.g. in dynamic file names or during forwarding (general malfunction of these fields in templates, mostly under heavy load)
  • bugfix: imuxsock did no longer ignore message-provided timestamp, if so configured (the *default*). Lead to no longer sub-second timestamps.
    closes: http://bugzilla.adiscon.com/show_bug.cgi?id=281
  • bugfix: omfile returns fatal error code for things that go really wrong previously, RS_RET_RESUME was returned, which lead to a loop inside the rule engine as omfile could not really recover.
  • bugfix: rsyslogd -v always said 64 atomics were not present
    thanks to mono_matsuko for the patch
  • bugfix: potential abort after reading invalid X.509 certificate closes:
    http://bugzilla.adiscon.com/show_bug.cgi?id=290
    Thanks to Tomas Heinrich for the patch
  • $Begin, $End, $StrictScoping directives have been removed as v6.4 will provide the same functionality in a far better way. So we do not want to clutter the code.

rsyslog 6.3.6 (v6-devel) released

Monday, September 19th, 2011

We have just released a new development version of rsyslog v6. This is primarily a maintenance release fixing a really annoying problem with reading the config file.

ChangeLog:

http://www.rsyslog.com/changelog-for-6-3-6-v6-devel/

Download:

http://www.rsyslog.com/rsyslog-6-3-6-v6-devel/

As always, feedback is appreciated.

Best regards,
Florian Riedl

rsyslog 6.3.6 (v6-devel)

Monday, September 19th, 2011

Download file name: rsyslog 6.3.6 (devel)

rsyslog 6.3.6 (devel)
md5sum: 758bb56b6f7d46cef49dd70fddf825dc

Author: Rainer Gerhards (rgerhards@adiscon.com)
Version: 6.3.6 File size: 2.47 MB

Download this file now!

Changelog for 6.3.6 (v6-devel)

Monday, September 19th, 2011

Version 6.3.6  [DEVEL] 2011-09-19

  • added $InputRELPServerBindRuleset directive to specify rulesets for RELP
  • bugfix: config parser did not support properties with dashes in them inside property-based filters. Thanks to Gerrit Seré for reporting this.

rsyslog multiple buxfixes released

Thursday, September 1st, 2011

Hi all,

There has a security issue been identified that can potentially lead to DoS. It is triggered by malformed RFC3164 messages. An abort only happens under very specific environmental trigger factors. Full details can be found in our security advisory here:

http://www.rsyslog.com/potential-dos-with-malformed-tag/

We would like to thank the Red Hat security team for finding this issue and working with us to resolve it.

As a consequence, we have updated all currently active versions. Please note that they do not only contain the fix for the security issue mentioned above but also other stability updates. For obvious reasons, updating to these versions is recommended. For details, please see the relevant ChangeLog.

  • v4-stable: 4.6.8
  • v4-beta: 4.7.5
  • v5-stable: 5.8.5
  • v5-devel: 5.9.3
  • v6-beta: 6.1.12
  • v6-devel: 6.3.5

All versions are available right now. If you do not want to update, you should consider applying an update to older versions. The fix is trivial, so it should apply to all vulnerable versions without problems (but we have not checked the myriad of versions out there). The security advisory contains the details.

The Changelogs and Download Links can be found below:

As always, feedback is appreciated.

Best regards,
Florian Riedl

rsyslog 6.3.5 (v6-devel)

Thursday, September 1st, 2011

Download file name: rsyslog 6.3.5 (devel)

rsyslog 6.3.5 (devel)
md5sum: ee92f2501b5b4489d80af5d41086e627

Author: Rainer Gerhards (rgerhards@adiscon.com)
Version: 6.3.5 File size: 2.472 MB

Download this file now!

Changelog for 6.3.5 (v6-devel)

Thursday, September 1st, 2011

Version 6.3.5  [DEVEL] (rgerhards/al), 2011-09-01

  • bugfix/security: off-by-two bug in legacy syslog parser, CVE-2011-3200
  • bugfix: mark message processing did not work correctly
  • imudp&imtcp now report error if no listener at all was defined
    Thanks to Marcin for suggesting this error message.
  • bugfix: potential misadressing in property replacer

rsyslog 6.1.12 (v6-beta)

Thursday, September 1st, 2011

Download file name: rsyslog 6.1.12 (beta)

rsyslog 6.1.12 (beta)
md5sum: 42edc753cf2b995b3866d50851d2af28

Author: Rainer Gerhards (rgerhards@adiscon.com)
Version: 6.1.12 File size: 2.411 MB

Download this file now!

Changelog for 6.1.12 (v6-beta)

Thursday, September 1st, 2011

Version 6.1.12  [BETA], 2011-09-01

  • bugfix/security: off-by-two bug in legacy syslog parser, CVE-2011-3200
  • bugfix: mark message processing did not work correctly
  • bugfix: potential misadressing in property replacer
  • bugfix: memcpy overflow can occur in allowed sender checkig if a name is resolved to IPv4-mapped-on-IPv6 address
    Found by Ismail Dönmez at suse
  • bugfix: The NUL-Byte for the syslogtag was not copied in MsgDup (msg.c)
  • bugfix: fixed incorrect state handling for Discard Action (transactions)
    Note: This caused all messages in a batch to be set to COMMITTED even if they were discarded.

rsyslog 6.3.4 (devel)

Tuesday, August 2nd, 2011

Download file name: rsyslog 6.3.4 (devel)

rsyslog 6.3.4 (devel)
md5sum: ff995409137125bf9fcc8b74196c35bc

Author: Rainer Gerhards (rgerhards@adiscon.com)
Version: 6.3.4 File size: 2.473 MB

Download this file now!