Reply to comment

Critical Sendmail Flaw, update/patch now

Sendmail < 8.12.8 has a critical flaw that affects header parsing. This was discovered by ISS and apparently has been known since Decemeber 2002 but was just now publicly disclosed because "critical infrastructure" organizations such as power companies, etc, were given the opportunity to address it before it was made public. I have HUGE issues with that approach, but thats another discussion, for now if you use sendmail (and somewhere along the line you DO) then patch it yourself and make someone aware of the issue who can.

See the linked 8.12.8 release notes and CERT for more.   http://www.sendmail.org/8.12.8.html

Reply

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <img> <a> <em> <strong> <cite> <code> <ul> <ol> <hr> <li> <dl> <dt> <dd> <pre> <b> <h1> <h2> <h3> <blockquote>
  • Lines and paragraphs break automatically.

More information about formatting options

CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.
1 + 0 =
Solve this simple math problem and enter the result. E.g. for 1+3, enter 4.