Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
  • Products & Services

    Products

    Support

    • Production Support
    • Development Support
    • Product Life Cycles

    Services

    • Consulting
    • Technical Account Management
    • Training & Certifications

    Documentation

    • Red Hat Enterprise Linux
    • Red Hat JBoss Enterprise Application Platform
    • Red Hat OpenStack Platform
    • Red Hat OpenShift Container Platform
    All Documentation

    Ecosystem Catalog

    • Red Hat Partner Ecosystem
    • Partner Resources
  • Tools

    Tools

    • Troubleshoot a product issue
    • Packages
    • Errata

    Customer Portal Labs

    • Configuration
    • Deployment
    • Security
    • Troubleshoot
    All labs

    Red Hat Insights

    Increase visibility into IT operations to detect and resolve technical issues before they impact your business.

    Learn More
    Go to Insights
  • Security

    Red Hat Product Security Center

    Engage with our Red Hat Product Security team, access security updates, and ensure your environments are not exposed to any known security vulnerabilities.

    Product Security Center

    Security Updates

    • Security Advisories
    • Red Hat CVE Database
    • Security Labs

    Keep your systems secure with Red Hat's specialized responses to security vulnerabilities.

    View Responses

    Resources

    • Security Blog
    • Security Measurement
    • Severity Ratings
    • Backporting Policies
    • Product Signing (GPG) Keys
  • Community

    Customer Portal Community

    • Discussions
    • Private Groups
    Community Activity

    Customer Events

    • Red Hat Convergence
    • Red Hat Summit

    Stories

    • Red Hat Subscription Value
    • You Asked. We Acted.
    • Open Source Communities
Or troubleshoot an issue.

Select Your Language

  • English
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Virtualization
  • Red Hat Identity Management
  • Red Hat Directory Server
  • Red Hat Certificate System
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Update Infrastructure
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat CloudForms
  • Red Hat OpenStack Platform
  • Red Hat OpenShift Container Platform
  • Red Hat OpenShift Data Science
  • Red Hat OpenShift Online
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat Single Sign On
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Thorntail
  • Red Hat build of Eclipse Vert.x
  • Red Hat build of OpenJDK
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Integration
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
  • Red Hat JBoss Data Virtualization
  • Red Hat Process Automation
  • Red Hat Process Automation Manager
  • Red Hat Decision Manager
All Products
Red Hat Product Errata RHBA-2013:1247 - Bug Fix Advisory
Issued:
2013-09-10
Updated:
2013-11-20

RHBA-2013:1247 - Bug Fix Advisory

  • Overview
  • Updated Packages

Synopsis

logwatch bug fix update

Type/Severity

Bug Fix Advisory

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An updated logwatch package that fixes several bugs is now available for Red Hat
Enterprise Linux 6.

Description

Logwatch is a customizable, pluggable log-monitoring system. It will go through
the user's logs for a given period of time and make a report in the areas that
the user needs.

This update fixes the following bugs:

  • Previously, logwatch did not correctly parse the up2date service's

"updateLoginInfo() login info" messages and displayed them as unmatched entries.
With this update, parsing of such log messages has been fixed and works as
expected. (BZ#737247)

  • Prior to this update, logwatch did not correctly parse many Openswan log

messages and displayed them as unmatched entries. With this update, parsing of
such log messages has been fixed and works as expected. (BZ#799690)

  • Logwatch did not parse Dovecot 2.x log messages properly. That resulted in a

lot of unmatched entries in its reports. This patch adds additional logic to
correctly parse Dovecot 2.x logs, thus unmatched entries related to Dovecot 2.x
messages no longer appear. (BZ#799987)

  • The .hdr files are headers for RPM packages; they are essentially metadata.

Logwatch's HTTP service parser emitted warnings for the .hdr files, even when
the "Detail" parameter was set to "Low". With this update, the .hdr files are
now parsed as archives, which removes spurious warnings about the .hdr files.
(BZ#800843)

  • Previously, logwatch did not correctly handle the "MailTo" option in its

configuration. That resulted in no output, even though a report should have been
displayed. This patch adds additional logic to correctly handle an empty
"MailTo" option. As a result, output is correctly produced even when this option
is empty. (BZ#837034)

  • Prior to this update, logwatch did not correctly parse many smartd log

messages and displayed them as unmatched entries. With this update, parsing of
such log messages has been fixed and works as expected. (BZ#888007)

  • Prior to this update, logwatch did not correctly parse DNS log messages with

DNSSEC validation enabled and displayed them as unmatched entries. With this
update, parsing of such log messages has been fixed and works as expected.
(BZ#894134)

  • Previously, logwatch did not correctly parse the postfix service's "improper

command pipelining" messages and displayed them as unmatched entries. With this
update, parsing of such log messages has been fixed and works as expected.
(BZ#894185)

  • Previously, logwatch did not correctly parse user names in the secure log. It

improperly assumed that such names are composed of letters only and displayed
messages containing names with other symbols, such as digits, as unmatched
entries. With this update, parsing of user names has been enhanced to include
underscores and digits, thus log messages containing such user names no longer
display as unmatched entries. (BZ#894191)

  • Logins initiated with the "su -" or "su -l" command were not correctly parsed

by logwatch and were displayed as unmatched entries. This update fixes this bug.
(BZ#974042)

  • Prior to this update, logwatch did not correctly parse the RSYSLOG_FileFormat

time stamps and displayed them as unmatched entries. With this update, parsing
of the rsyslog time stamps has been fixed and works as expected. (BZ#974044)

  • SSH Kerberos (GSS) logins were not correctly parsed by logwatch and were

displayed as unmatched entries. This update fixes this bug. (BZ#974046)

  • Xen virtual console logins were not correctly parsed by logwatch and were

displayed as unmatched entries. This update fixes this bug. (BZ#974047)

Users of logwatch are advised to upgrade to this updated package, which fixes
these bugs.

Solution

Before applying this update, make sure all previously-released errata relevant
to your system have been applied.

This update is available via the Red Hat Network. Details on how to use the Red
Hat Network to apply this update are available at
https://access.redhat.com/site/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server 6 x86_64
  • Red Hat Enterprise Linux Server 6 i386
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support 6 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support 6 i386
  • Red Hat Enterprise Linux Workstation 6 x86_64
  • Red Hat Enterprise Linux Workstation 6 i386
  • Red Hat Enterprise Linux Desktop 6 x86_64
  • Red Hat Enterprise Linux Desktop 6 i386
  • Red Hat Enterprise Linux for IBM z Systems 6 s390x
  • Red Hat Enterprise Linux for Power, big endian 6 ppc64
  • Red Hat Enterprise Linux for Scientific Computing 6 x86_64
  • Red Hat Enterprise Linux Server from RHUI 6 x86_64
  • Red Hat Enterprise Linux Server from RHUI 6 i386
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 6 s390x

Fixes

  • BZ - 737247 - logwatch/up2date fix and extension
  • BZ - 799690 - Ignore the ignorable openswan messages
  • BZ - 800843 - logwatch "http" script should treat APT .hdr files as "archives" (and not as "other")
  • BZ - 888007 - logwatch a bit chatty with smartd
  • BZ - 894185 - Logwatch does not handle "improper command pipelining after (NOOP|RSET)"
  • BZ - 894191 - Logwatch doesn't proper ignore "password check failed for user"

CVEs

(none)

References

(none)

Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server 6

SRPM
logwatch-7.3.6-52.el6.src.rpm SHA-256: 77c170eef31a35262b4995b0eee445037e67744505a110e338f72e2b59ac69ef
x86_64
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8
i386
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8

Red Hat Enterprise Linux Server - Extended Life Cycle Support 6

SRPM
logwatch-7.3.6-52.el6.src.rpm SHA-256: 77c170eef31a35262b4995b0eee445037e67744505a110e338f72e2b59ac69ef
x86_64
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8
i386
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8

Red Hat Enterprise Linux Workstation 6

SRPM
logwatch-7.3.6-52.el6.src.rpm SHA-256: 77c170eef31a35262b4995b0eee445037e67744505a110e338f72e2b59ac69ef
x86_64
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8
i386
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8

Red Hat Enterprise Linux Desktop 6

SRPM
logwatch-7.3.6-52.el6.src.rpm SHA-256: 77c170eef31a35262b4995b0eee445037e67744505a110e338f72e2b59ac69ef
x86_64
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8
i386
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8

Red Hat Enterprise Linux for IBM z Systems 6

SRPM
logwatch-7.3.6-52.el6.src.rpm SHA-256: 77c170eef31a35262b4995b0eee445037e67744505a110e338f72e2b59ac69ef
s390x
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8

Red Hat Enterprise Linux for Power, big endian 6

SRPM
logwatch-7.3.6-52.el6.src.rpm SHA-256: 77c170eef31a35262b4995b0eee445037e67744505a110e338f72e2b59ac69ef
ppc64
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8

Red Hat Enterprise Linux for Scientific Computing 6

SRPM
logwatch-7.3.6-52.el6.src.rpm SHA-256: 77c170eef31a35262b4995b0eee445037e67744505a110e338f72e2b59ac69ef
x86_64
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8

Red Hat Enterprise Linux Server from RHUI 6

SRPM
logwatch-7.3.6-52.el6.src.rpm SHA-256: 77c170eef31a35262b4995b0eee445037e67744505a110e338f72e2b59ac69ef
x86_64
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8
i386
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8

Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 6

SRPM
logwatch-7.3.6-52.el6.src.rpm SHA-256: 77c170eef31a35262b4995b0eee445037e67744505a110e338f72e2b59ac69ef
s390x
logwatch-7.3.6-52.el6.noarch.rpm SHA-256: 2f28c7d22b9f5067bd153033f43652973d3b5799d17b43c590894b211b4aa7e8

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

About

  • Red Hat Subscription Value
  • About Red Hat
  • Red Hat Jobs
Copyright © 2023 Red Hat, Inc.
  • Privacy Statement
  • Customer Portal Terms of Use
  • All Policies and Guidelines
Red Hat Summit
Twitter