Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2006-1624

Опубликовано: 05 апр. 2006
Источник: debian

Описание

The default configuration of syslogd in the Linux sysklogd package does not enable the -x (disable name lookups) option, which allows remote attackers to cause a denial of service (traffic amplification) via messages with spoofed source IP addresses.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sysklogdunfixedpackage

Примечания

  • No sane person will open a network socket for syslog without apropriate

  • firewall rules. The default is not to listen to the network.

Связанные уязвимости

ubuntu
больше 19 лет назад

The default configuration of syslogd in the Linux sysklogd package does not enable the -x (disable name lookups) option, which allows remote attackers to cause a denial of service (traffic amplification) via messages with spoofed source IP addresses.

nvd
больше 19 лет назад

The default configuration of syslogd in the Linux sysklogd package does not enable the -x (disable name lookups) option, which allows remote attackers to cause a denial of service (traffic amplification) via messages with spoofed source IP addresses.

github
больше 3 лет назад

The default configuration of syslogd in the Linux sysklogd package does not enable the -x (disable name lookups) option, which allows remote attackers to cause a denial of service (traffic amplification) via messages with spoofed source IP addresses.