Sendmail contains a flaw that may allow a local attacker to gain increased privileges. The flaw can be exploited by creating a custom .forward file that calls a program to create a SUID shell before connecting to the SMTP port (25) and sending yourself mail from the user you want to invoke the shell as. This will work for any user on the system except root.
Classification
Location:
Local Access Required
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Exploit:
Exploit Public
Solution
Currently, there are no known upgrades, patches, or workarounds available to correct this issue.