[5178] in RedHat Linux List
Re: SECURITY: Important fix for sendmail
daemon@ATHENA.MIT.EDU (Hans Zoebelein)
Tue Nov 19 13:36:43 1996
Date: Tue, 19 Nov 1996 01:22:42 +0100 (MET)
From: Hans Zoebelein <zocki@goldfish.cube.net>
To: redhat-list@redhat.com
In-Reply-To: <Pine.LNX.3.93.961118095557.7844R-100000@redhat.com>
Resent-From: redhat-list@redhat.com
Reply-To: redhat-list@redhat.com
On Mon, 18 Nov 1996, Erik Troan wrote:
>
> All publically released versions of sendmail through 8.8.2 have a major
> security hole which allows any user of your system to gain root access. This
> is a architecture independent problem, which a single exploit working on
> all systems which use sendmail.
take a look at qmail mail delivery package and you don't have to be
afraid of the next sendmail security hole (I'll bet a six pack and a
pizza it will be found within 12 weeks :)
Hans
--
PLEASE read the Red Hat FAQ, Tips, Errata and the MAILING LIST ARCHIVES!
________________________________________________________________________
http://www.redhat.com/RedHat-FAQ http://www.redhat.com/RedHat-Errata
http://www.redhat.com/RedHat-Tips http://www.redhat.com/mailing-lists
------------------------------------------------------------------------
To unsubscribe: mail -s unsubscribe redhat-list-request@redhat.com < /dev/null