| Debian Security Advisory - sendmail |
|---|
Webmaster's note: Other vendors and distribution developers have also released new packages for sendmail
Package : sendmail
Vulnerability : buffer overflows
Problem-Type : remote
Debian-specific: no
CVE Ids : CAN-2003-0681 CAN-2003-0694
- CAN-2003-0681
A "potential buffer overflow in ruleset parsing" for Sendmail
8.12.9, when using the nonstandard rulesets (1) recipient (2),
final, or (3) mailer-specific envelope recipients, has unknown
consequences.
- CAN-2003-0694
The prescan function in Sendmail 8.12.9 allows remote attackers to
execute arbitrary code via buffer overflow attacks, as demonstrated
using the parseaddr function in parseaddr.c.
|