[29124] in bugtraq
Re: sendmail 8.12.8 available
daemon@ATHENA.MIT.EDU (Florian Weimer)
Mon Mar 3 13:09:29 2003
To: bugtraq@securityfocus.com, vulndiscuss@vulnwatch.org
From: Florian Weimer <Weimer@CERT.Uni-Stuttgart.DE>
Date: Mon, 03 Mar 2003 18:26:17 +0100
In-Reply-To: <20030303090809.C2136@zardoc.esmtp.org> (Claus Assmann's
message of "Mon, 3 Mar 2003 09:08:09 -0800")
Message-ID: <871y1o2wg6.fsf@Login.CERT.Uni-Stuttgart.DE>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Claus Assmann <ca+bugtraq@sendmail.org> writes:
> Sendmail, Inc., and the Sendmail Consortium announce the availability
> of sendmail 8.12.8. It contains a fix for a critical security
> problem discovered by Mark Dowd of ISS X-Force; we thank ISS X-Force
> for bringing this problem to our attention. Sendmail urges all users to
> either upgrade to sendmail 8.12.8 or apply the patch for 8.12 that
> is part of this announcement.
Would people be willing to share filter rules for other MTAs to block
offending messages on relays?
Thanks,
--
Florian Weimer Weimer@CERT.Uni-Stuttgart.DE
University of Stuttgart http://CERT.Uni-Stuttgart.DE/people/fw/
RUS-CERT fax +49-711-685-5898