Oval Definition:
oval:org.mitre.oval:def:595
Revision Date
:
2010-09-20
Version
:
22
Title
:
Potential BO in Ruleset Parsing for Sendmail
Description
:
A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2003-0681
Platform(s)
:
Red Hat Linux 9
Product(s)
:
Sendmail
Definition Synopsis
Software section
Red Hat 9 is installed
AND
ix86 architecture
AND
sendmail version is less than 8.12.8-9.90
AND
Configuration section
Vulnerable Config
sendmail is Set-UID
sendmail is Set-UID
AND
sendmail is Set-UID
sendmail is Set-UID
OR
sendmail is Set-UID
OR
sendmail is Set-GID
sendmail is Set-GID
AND
sendmail is Set-UID
OR
sendmail listening
BACK