Korean
<< Back
VID 14057
Severity 40
Port 22
Protocol TCP
Class LSC
Detailed Description The host system's /etc/syslog.conf file's permission or owner is unsafe. If access to /etc/syslog.conf is allowed, Info or alert logs that are created while system operation can be manipulated.

* Platforms Affected:
UNIX, Linux
Recommendation Reset permissions of the file lower than 644 as the following
chmod 644 /etc/syslog.conf

if the owner of the file is not root, change the owner
chown root /etc/syslog.conf
Related URL (CVE)
Related URL (SecurityFocus)
Related URL (ISS)