[5178] in RedHat Linux List

home help back first fref pref prev next nref lref last post

Re: SECURITY: Important fix for sendmail

daemon@ATHENA.MIT.EDU (Hans Zoebelein)
Tue Nov 19 13:36:43 1996

Date: Tue, 19 Nov 1996 01:22:42 +0100 (MET)
From: Hans Zoebelein <zocki@goldfish.cube.net>
To: redhat-list@redhat.com
In-Reply-To: <Pine.LNX.3.93.961118095557.7844R-100000@redhat.com>
Resent-From: redhat-list@redhat.com
Reply-To: redhat-list@redhat.com

On Mon, 18 Nov 1996, Erik Troan wrote:

> 
> All publically released versions of sendmail through 8.8.2 have a major
> security hole which allows any user of your system to gain root access. This
> is a architecture independent problem, which a single exploit working on
> all systems which use sendmail.

take a look at qmail mail delivery package and you don't have to be 
afraid of the next sendmail security hole (I'll bet a six pack and a
pizza it will be found within 12 weeks :) 

Hans


--
  PLEASE read the Red Hat FAQ, Tips, Errata and the MAILING LIST ARCHIVES!
  ________________________________________________________________________
  http://www.redhat.com/RedHat-FAQ   http://www.redhat.com/RedHat-Errata
  http://www.redhat.com/RedHat-Tips  http://www.redhat.com/mailing-lists
  ------------------------------------------------------------------------
To unsubscribe: mail -s unsubscribe redhat-list-request@redhat.com < /dev/null


home help back first fref pref prev next nref lref last post