syslogd on OpenBSD 2.9 through 3.2 does not change the source IP address of syslog packets when the machine's IP addressed is changed without rebooting, e.g. via ifconfig, which can cause incorrect information to be sent to the syslog server.
Weaknesses in this category are typically introduced during the configuration of the software.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2002-11/0272.html | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/10702 | vdb entry |
http://www.securityfocus.com/bid/6219 | vdb entry |