OSVDB ID: 15617

Title: Sendmail smtpmessage Unspecified Overflow

Info

Disclosure

Unknown

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

An overflow exists in Sendmail. The smtpmessage functionality fails to properly handle buffer input resulting in an overflow. With a specially crafted request, an attacker can cause the execution of arbitrary code. No further details have been provided.

Classification

Location: Location Unknown
Attack Type: Input Manipulation
Impact: Loss of Integrity
Exploit: Exploit Unknown
Disclosure: OSVDB Verified, Vendor Verified

Solution

Upgrade to version 3.332 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.

Products

Eric Allman

Sendmail

3.331

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/15617