Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 30 Aug 2001 14:53:41 -0500
From:      Christopher Schulte <christopher@schulte.org>
To:        "Ronan Lucio" <ronan@melim.com.br>, <security@freebsd.org>
Subject:   Re: Sendmail
Message-ID:  <5.1.0.14.0.20010830144937.022f4c80@pop.schulte.org>
In-Reply-To: <08ab01c1318b$defef2f0$2aa8a8c0@melim.com.br>

next in thread | previous in thread | raw e-mail | index | archive | help
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:57.sendmail.=
asc

This link explains exactly what's vulnerable.

 >Topic: sendmail contains local root vulnerability

So, if users have local access, then yes you're probably vulnerable.  Read=
=20
the advisory for specific details.

At 04:42 PM 8/30/2001 -0300, Ronan Lucio wrote:
>Hi all,
>
>If I have a machine that any user has shell access. It=B4s just a mail=
 server.
>Is such machine vulnerable for sendmail?
>
>[ ]=B4s
>
>Ronan Lucio

-c


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?5.1.0.14.0.20010830144937.022f4c80>