Berkeley Sendmail Starvation and Overflow Vulnerabilities
BID:717
Info
Berkeley Sendmail Starvation and Overflow Vulnerabilities
| Bugtraq ID: | 717 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 11 1996 12:00AM |
| Updated: | Sep 11 1996 12:00AM |
| Credit: | The overflow vulnerability was first reported by Mudge <[email protected]> on Bugtraq on 11 September 1996. |
| Vulnerable: |
SCO Open Server 5.0.2 SCO Open Server 5.0 SCO Internet FastStart 1.0 Redhat Linux 3.0.3 IBM AIX 4.2 IBM AIX 4.1 IBM AIX 3.2 HP HP-UX 10.20 HP HP-UX 10.10 HP HP-UX 10.0 1 FreeBSD FreeBSD 2.1.5 Eric Allman Sendmail 8.7.5 Eric Allman Sendmail 8.7.4 Eric Allman Sendmail 8.7.3 Eric Allman Sendmail 8.7.2 Eric Allman Sendmail 8.7.1 Eric Allman Sendmail 8.6 .x Digital (Compaq) OSF/1 1.3.2 BSDI BSD/OS 2.1 |
| Not Vulnerable: |
Eric Allman Sendmail 8.7.6 |
Exploit / POC
Berkeley Sendmail Starvation and Overflow Vulnerabilities
See discussion.
See discussion.
References
Berkeley Sendmail Starvation and Overflow Vulnerabilities
References:
References:
- Support Web page for Free Sendmail (Sendmail Consortium)
- Web Page for the Commercially Supported Sendmail (Sendmail Consortium)