Gentoo: sendmail buffer overflow vulnerability
Summary
- - --------------------------------------------------------------------- GENTOO LINUX SECURITY ANNOUNCEMENT 200303-27 - - ---------------------------------------------------------------------
- - ---------------------------------------------------------------------
- From advisory: "There is a vulnerability in sendmail that can be exploited to cause a denial-of-service condition and could allow a remote attacker to execute arbitrary code with the privileges of the sendmail daemon, typically root."
Read the full advisory at 2003 CERT Advisories
SOLUTION
It is recommended that all Gentoo Linux users who are running net-mail/sendmail upgrade to sendmail-8.12.9 as follows:
emerge sync emerge sendmail emerge clean
- - --------------------------------------------------------------------- aliz@gentoo.org - GnuPG key is available at avenj@gentoo.org - - ---------------------------------------------------------------------
8.12.9
Resolution
References
Availability
Concerns
Background