SUSE Rsyslog Buffer Overflow Vulnerabilities Announced

SUSE Rsyslog Buffer Overflow Vulnerabilities Announced

First seen 5 Aug 2026, 19:31 UTC Linuxsecurity 97% similarity 60.6

Article Content

Browse articles
ThreatCluster

SUSE has released important updates for the rsyslog service addressing critical vulnerabilities. The updates fix CVE-2026-61548, which can lead to a stack buffer overflow when parsing crafted RFC 5424 messages. Additionally, a configuration-dependent issue in the optional imptcp input module allows unauthenticated remote peers to crash rsyslogd. Affected systems include SUSE Linux Enterprise Server versions 12 SP5 and 15 SP7. Administrators are urged to apply the patches immediately to mitigate potential exploitation. The vulnerabilities have been rated important, emphasizing the need for prompt action. The updates were released on August 4, 2026, with advisories published on August 5, 2026.

Key Points: • SUSE released patches for critical vulnerabilities in rsyslog affecting multiple versions. • CVE-2026-61548 can lead to a stack buffer overflow from crafted messages. • Immediate patching is recommended to prevent potential exploitation.

ThreatCluster AI How this analysis works

Timeline

2026-08-04
SUSE releases updates for rsyslog vulnerabilities
SUSE announced patches for critical vulnerabilities in rsyslog, including CVE-2026-61548 and a crash issue in imptcp.
Linuxsecurity
2026-08-05
SUSE issues advisory for rsyslog vulnerabilities
An advisory was published detailing the vulnerabilities and patch instructions for affected SUSE systems.
Linuxsecurity

Community

Browse all →