From owner-freebsd-security Fri Oct 18 16:15:55 1996 Return-Path: owner-security Received: (from root@localhost) by freefall.freebsd.org (8.7.5/8.7.3) id QAA00229 for security-outgoing; Fri, 18 Oct 1996 16:15:55 -0700 (PDT) Received: from mexico.brainstorm.eu.org (root@mexico.brainstorm.eu.org [193.56.58.253]) by freefall.freebsd.org (8.7.5/8.7.3) with ESMTP id QAA00179 for ; Fri, 18 Oct 1996 16:15:26 -0700 (PDT) Received: from brasil.brainstorm.eu.org (brasil.brainstorm.eu.org [193.56.58.33]) by mexico.brainstorm.eu.org (8.7.5/8.7.3) with ESMTP id BAA31795 for ; Sat, 19 Oct 1996 01:14:55 +0200 Received: (from uucp@localhost) by brasil.brainstorm.eu.org (8.6.12/8.6.12) with UUCP id BAA25970 for security@FreeBSD.org; Sat, 19 Oct 1996 01:13:55 +0200 Received: (from roberto@localhost) by keltia.freenix.fr (8.8.0/keltia-uucp-2.9) id AAA26441; Sat, 19 Oct 1996 00:23:30 +0200 (MET DST) Message-Id: <199610182223.AAA26441@keltia.freenix.fr> Date: Sat, 19 Oct 1996 00:23:30 +0200 From: roberto@keltia.freenix.fr (Ollivier Robert) To: security@FreeBSD.org Subject: Re: First security hole in sendmail 8.8.0 (fwd) In-Reply-To: <199610180559.HAA23697@keltia.freenix.fr>; from Ollivier Robert on Oct 18, 1996 07:59:07 +0200 References: <199610180559.HAA23697@keltia.freenix.fr> X-Mailer: Mutt 0.47.13 Mime-Version: 1.0 X-Operating-System: FreeBSD 2.2-CURRENT ctm#2584 Sender: owner-security@FreeBSD.org X-Loop: FreeBSD.org Precedence: bulk According to Ollivier Robert: > This is fixed in 8.8.1. It was the "= " handling at the end of the line > that was a problem. Sigh. 8.8.2 is now out and this time is supposed to really fix the problem. The first patch was void. -- Ollivier ROBERT -=- The daemon is FREE! -=- roberto@keltia.freenix.fr FreeBSD keltia.freenix.fr 2.2-CURRENT #25: Tue Oct 15 21:13:57 MET DST 1996