Oval Definition:
oval:org.mitre.oval:def:2222
Revision Date
:
2005-06-01
Version
:
16
Title
:
Sendmail Address Processor Buffer Overflow
Description
:
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2002-1337
Platform(s)
:
Sun Solaris 7
Sun Solaris 8
Sun Solaris 9
Product(s)
:
Sendmail
Definition Synopsis
Software section
Solaris 7,8,or 9 installed
Solaris 8 Installed
OR
Solaris 7 Installed
OR
Solaris 9 Installed
AND
Sendmail - user (SUNWsndmu) installed
AND
NOT
Patch 107684-08 or later installed
AND
NOT
Patch 110615-08 or later installed
AND
NOT
Patch 113575-03 or later installed
AND
Configuration section
Sendmail running
BACK