Major vulnerability in Sendmail 8.13.5 and earlier versions

Posted by dave on Mar 22, 2006 10:43 AM
By Sendmail.com
Mail this story
Web version

Sendmail, Inc. has recently become aware of a security vulnerability in certain versions of sendmail Mail Transfer Agent (MTA) and UNIX and Linux products that contain it. Sendmail was notified by security researchers at ISS that, under some specific timing conditions, this vulnerability may permit a specifically crafted attack to take over the sendmail MTA process, allowing remote attackers to execute commands and run arbitrary programs on the system running the MTA, affecting email delivery, or tampering with other programs and data on this system.

Full Story

Printed at http://lxer.com/module/newswire/view/56771/index.html