From owner-freebsd-security Sun Nov 17 22:11:48 1996 Return-Path: owner-security Received: (from root@localhost) by freefall.freebsd.org (8.7.5/8.7.3) id WAA14254 for security-outgoing; Sun, 17 Nov 1996 22:11:48 -0800 (PST) Received: from mexico.brainstorm.eu.org (root@mexico.brainstorm.fr [193.56.58.253]) by freefall.freebsd.org (8.7.5/8.7.3) with ESMTP id WAA14232 for ; Sun, 17 Nov 1996 22:11:14 -0800 (PST) Received: from brasil.brainstorm.eu.org (brasil.brainstorm.fr [193.56.58.33]) by mexico.brainstorm.eu.org (8.7.5/8.7.3) with ESMTP id HAA13574 for ; Mon, 18 Nov 1996 07:11:03 +0100 Received: (from uucp@localhost) by brasil.brainstorm.eu.org (8.6.12/8.6.12) with UUCP id HAA08166 for freebsd-security@freebsd.org; Mon, 18 Nov 1996 07:10:47 +0100 Received: (from roberto@localhost) by keltia.freenix.fr (8.8.2/keltia-uucp-2.9) id HAA23337; Mon, 18 Nov 1996 07:02:55 +0100 (MET) Message-ID: Date: Mon, 18 Nov 1996 07:02:55 +0100 From: roberto@keltia.freenix.fr (Ollivier Robert) To: freebsd-security@freebsd.org Subject: Re: BoS: Exploit for sendmail smtpd bug (ver. 8.7-8.8.2). References: <9611180247.AA15359@communica.com.au> X-Mailer: Mutt 0.50.05 Mime-Version: 1.0 X-Operating-System: FreeBSD 3.0-CURRENT ctm#2686 In-Reply-To: ; from Daniel O'Callaghan on Nov 18, 1996 15:18:14 +1100 Sender: owner-security@freebsd.org X-Loop: FreeBSD.org Precedence: bulk According to Daniel O'Callaghan: > > Are there any other reasons? d) process .forward files as the user. -- Ollivier ROBERT -=- The daemon is FREE! -=- roberto@keltia.freenix.fr FreeBSD keltia.freenix.fr 3.0-CURRENT #28: Sun Nov 10 13:37:41 MET 1996