An input validation error in the debugging functionality of all currently
released versions of sendmail can enable a local user to gain root
access. New packages that fix this problem are available for Red Hat Linux
5.2, 6.2, 7.0, and 7.1.
Sendmail, the low-level system for sending and receiving email for Red
Hat Linux, has an input validation flaw in part of its debugging code.
This flaw could be exploited by an attacker who already has local access
to a system and wants to gain root privileges.
Red Hat is issuing new sendmail packages that correct this flaw for all our
currently supported Red Hat Linux platforms. All users are strongly
advised to apply these fixes.
| Red Hat Linux 5.2 |
|
| SRPMS: |
ftp://updates.redhat.com/5.2/en/os/SRPMS/sendmail-8.11.6-1.5.y.src.rpm
Missing file |
e9d25ec525f0ed1526b8b3583d9ca7e7 |
| |
| alpha: |
ftp://updates.redhat.com/5.2/en/os/alpha/sendmail-8.11.6-1.5.y.alpha.rpm
Missing file |
7e2dc054ad74b6ac44f6290eba54e648 |
ftp://updates.redhat.com/5.2/en/os/alpha/sendmail-cf-8.11.6-1.5.y.alpha.rpm
Missing file |
6bbd2a55046f8db9d4ee12092bca7608 |
ftp://updates.redhat.com/5.2/en/os/alpha/sendmail-doc-8.11.6-1.5.y.alpha.rpm
Missing file |
552d435800d65055e1b8ae93b98d7d8e |
| |
| i386: |
ftp://updates.redhat.com/5.2/en/os/i386/sendmail-8.11.6-1.5.y.i386.rpm
Missing file |
d8d15a539b871303061fb627d8b15eb3 |
ftp://updates.redhat.com/5.2/en/os/i386/sendmail-cf-8.11.6-1.5.y.i386.rpm
Missing file |
2fae721d5336984dbea8b6324b632c88 |
ftp://updates.redhat.com/5.2/en/os/i386/sendmail-doc-8.11.6-1.5.y.i386.rpm
Missing file |
19fe26557d2e2707a4bde205e43c4f77 |
| |
| sparc: |
ftp://updates.redhat.com/5.2/en/os/sparc/sendmail-8.11.6-1.5.y.sparc.rpm
Missing file |
335d9ea884349e8e9a7e0d5fa43a0b0b |
ftp://updates.redhat.com/5.2/en/os/sparc/sendmail-cf-8.11.6-1.5.y.sparc.rpm
Missing file |
6a64612a560ef425801aa118f6874fc3 |
ftp://updates.redhat.com/5.2/en/os/sparc/sendmail-doc-8.11.6-1.5.y.sparc.rpm
Missing file |
3e7ae72eae38c1a88b9a0c88c1f62185 |
| |
| Red Hat Linux 6.2 |
|
| SRPMS: |
sendmail-8.11.6-1.6.y.src.rpm
File outdated by: RHSA-2003:120 |
9430ad1f58b31fedbd2c3118e38c91bb |
| |
| Alpha: |
ftp://updates.redhat.com/6.2/en/os/alpha/sendmail-8.11.6-1.6.y.alpha.rpm
Missing file |
8fe26b4facd48fb59d431952cb16660f |
ftp://updates.redhat.com/6.2/en/os/alpha/sendmail-cf-8.11.6-1.6.y.alpha.rpm
Missing file |
5a3c1b19e26925cf8d8f31cf70678f3a |
ftp://updates.redhat.com/6.2/en/os/alpha/sendmail-doc-8.11.6-1.6.y.alpha.rpm
Missing file |
fc2b2f2087c9e0a22c7e2b92dc05eaba |
| |
| IA-32: |
sendmail-8.11.6-1.6.y.i386.rpm
File outdated by: RHSA-2003:120 |
f677c0bc542495680a47c6b3185d3f44 |
sendmail-cf-8.11.6-1.6.y.i386.rpm
File outdated by: RHSA-2003:120 |
afc7efca38e40f1affbdc9fdce90a433 |
sendmail-doc-8.11.6-1.6.y.i386.rpm
File outdated by: RHSA-2003:120 |
dfe5b8d85adba6f17da61a1d25f64f42 |
| |
| Sparc: |
ftp://updates.redhat.com/6.2/en/os/sparc/sendmail-8.11.6-1.6.y.sparc.rpm
Missing file |
157b06887265d528675c1c68721cdbf6 |
ftp://updates.redhat.com/6.2/en/os/sparc/sendmail-cf-8.11.6-1.6.y.sparc.rpm
Missing file |
38602d5d6296b7b9ca578d4c8f446168 |
ftp://updates.redhat.com/6.2/en/os/sparc/sendmail-doc-8.11.6-1.6.y.sparc.rpm
Missing file |
941a815f6b4a309f20b37e1a36e4e40f |
| |
| Red Hat Linux 7.0 |
|
| SRPMS: |
sendmail-8.11.6-2.7.0.src.rpm
File outdated by: RHSA-2003:120 |
c1fd7503743391edc745bad7da351f09 |
| |
| Alpha: |
ftp://updates.redhat.com/7.0/en/os/alpha/sendmail-8.11.6-2.7.0.alpha.rpm
Missing file |
cf7a3902265300daadb306e4e42e7ea8 |
ftp://updates.redhat.com/7.0/en/os/alpha/sendmail-cf-8.11.6-2.7.0.alpha.rpm
Missing file |
9052d47e15e6d1686289a95654498c3f |
ftp://updates.redhat.com/7.0/en/os/alpha/sendmail-doc-8.11.6-2.7.0.alpha.rpm
Missing file |
6e846271f7d0ac2094ebc0d22121fd4a |
| |
| IA-32: |
sendmail-8.11.6-2.7.0.i386.rpm
File outdated by: RHSA-2003:120 |
cad605de705ac26fb846253a98927536 |
sendmail-cf-8.11.6-2.7.0.i386.rpm
File outdated by: RHSA-2003:120 |
d0ad6e46ac60cd445810378933a5afbe |
sendmail-doc-8.11.6-2.7.0.i386.rpm
File outdated by: RHSA-2003:120 |
1b6ef91eafdf85c711e7da792b3294d7 |
| |
| Red Hat Linux 7.1 |
|
| SRPMS: |
sendmail-8.11.6-2.7.1.src.rpm
File outdated by: RHSA-2003:283 |
f8ba51c13b3845a234ab077417e23122 |
| |
| Alpha: |
ftp://updates.redhat.com/7.1/en/os/alpha/sendmail-8.11.6-2.7.1.alpha.rpm
Missing file |
14111e7dc86569b0490a2b7e11288993 |
ftp://updates.redhat.com/7.1/en/os/alpha/sendmail-cf-8.11.6-2.7.1.alpha.rpm
Missing file |
8a15cd0349711ffadc8f4a0041cf6b30 |
ftp://updates.redhat.com/7.1/en/os/alpha/sendmail-doc-8.11.6-2.7.1.alpha.rpm
Missing file |
d73f611abcb237f1a0e25f56ecdaa714 |
| |
| IA-32: |
sendmail-8.11.6-2.7.1.i386.rpm
File outdated by: RHSA-2003:283 |
331c95ac2c260436643839b3ac47c71f |
sendmail-cf-8.11.6-2.7.1.i386.rpm
File outdated by: RHSA-2003:283 |
360c54c392c09065479e45dd66f84f65 |
sendmail-doc-8.11.6-2.7.1.i386.rpm
File outdated by: RHSA-2003:283 |
010e026659d20fa7fdc855b7e090f042 |
| |
| IA-64: |
ftp://updates.redhat.com/7.1/en/os/ia64/sendmail-8.11.6-2.7.1.ia64.rpm
Missing file |
d9b97da0204c5340f64f3100782900cd |
ftp://updates.redhat.com/7.1/en/os/ia64/sendmail-cf-8.11.6-2.7.1.ia64.rpm
Missing file |
55742cdca260b38d9654cc3db33dc41b |
ftp://updates.redhat.com/7.1/en/os/ia64/sendmail-doc-8.11.6-2.7.1.ia64.rpm
Missing file |
5395f4ee43d5e45535f96b2416ef5b5b |
| |
52194 - SUID sendmail allows local overflow