Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 615
Alerts This Week
Warning Icon 1 615

Gentoo: 200512-05 High: Xmail Sendmail Buffer Overflow Threat

gentoo
Calendar Grey December 14, 2005
Scroller Gentoo
Xmail on Gentoo faces a critical buffer overflow vulnerability that enables local users to escalate privileges. Update to remedy this issue.
The sendmail program in Xmail is vulnerable to a buffer overflow, potentially resulting in local privilege escalation.

Summary

Gentoo Linux Security Advisory GLSA 200512-05 https://security.gentoo.org/ Severity: High Title: Xmail: Privilege escalation through sendmail Date: December 14, 2005 Bugs: #109381 ID: 200512-05

Synopsis ======= The sendmail program in Xmail is vulnerable to a buffer overflow, potentially resulting in local privilege escalation.
Background ========= Xmail is an Internet and intranet mail server.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 mail-mta/xmail < 1.22 >= 1.22
========== iDEFENSE reported that the AddressFromAtPtr function in the sendmail program fails to check bounds on arguments passed from other functions, and as a result an expl...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround