Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 7 Jan 1999 12:23:40 +1100
From:      Peter Jeremy <peter.jeremy@auss2.alcatel.com.au>
To:        Don.Lewis@tsc.tdk.com
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: kernel/syslogd hack
Message-ID:  <99Jan7.122259est.40326@border.alcanet.com.au>

next in thread | raw e-mail | index | archive | help

Don Lewis <Don.Lewis@tsc.tdk.com> wrote:
>If syslogd received a message without the credentials, it could log the
>information that it was handed with an indication that the information
>may not be trustworthy.

Which immediately returns us to the original problem - which is that
the current syslog protocol makes DOS attacks trivial.

Peter

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?99Jan7.122259est.40326>