Sendmail V.5 -oR Privilege Escalation Vulnerability
BID:7829
Info
Sendmail V.5 -oR Privilege Escalation Vulnerability
| Bugtraq ID: | 7829 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 10 1995 12:00AM |
| Updated: | Sep 10 1995 12:00AM |
| Credit: | Discovery is credited to 8lgm. |
| Vulnerable: |
Sun SunOS 4.1.4 -JL Sun SunOS 4.1.4 Sun SunOS 4.1.3 c Sun SunOS 4.1.3 _U1 Sun SunOS 4.1.3 Sun SunOS 4.1.2 Sun SunOS 4.1.1 Sendmail Consortium Sendmail 5.65 Sendmail Consortium Sendmail 5.61 Sendmail Consortium Sendmail 5.59 |
| Not Vulnerable: | |
Discussion
Sendmail V.5 -oR Privilege Escalation Vulnerability
Sendmail V.5 is prone to a privilege escalation vulnerability. This issue is due to improper handling of the -oR option (either from the command line or from a configuration file). Exploitation could permit a local attacker to gain elevated privileges.
This issue affects Sendmail versions on SunOS 4.1.x systems, but also affects Sendmail V.5 on other Unix operating systems.
Sendmail V.5 is prone to a privilege escalation vulnerability. This issue is due to improper handling of the -oR option (either from the command line or from a configuration file). Exploitation could permit a local attacker to gain elevated privileges.
This issue affects Sendmail versions on SunOS 4.1.x systems, but also affects Sendmail V.5 on other Unix operating systems.
Exploit / POC
Sendmail V.5 -oR Privilege Escalation Vulnerability
An exploit was released by 8lgm and has been circulating since this vulnerability was publicly disclosed in 1995.
An exploit was released by 8lgm and has been circulating since this vulnerability was publicly disclosed in 1995.