Nessus Plugin #11348

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

Sendmail long debug local overflow

Family:
SMTP problems
Category:
infos
Copyright:
This script is Copyright (C) 2003 Xue Yong Zhi
Summary:
Checks the version number
Version:
$Revision: 1.2 $
Cve_id:
CVE-1999-1309
Bugtraq_id:
-
Xrefs:
-
Description:

The remote sendmail server, according to its version number,
allows local users to gain root access via a large value in
the debug (-d) command line option

Solution : Install sendmail newer than versions 8.6.8 or install
a vendor supplied patch.

Risk factor : High (Local) / None (remote with no account)
Generiert am 27.04.2005 um 18:49:54 Uhr.