Sendmail Security Patch release for WEBppliance 3.1.1 and 3.1.0 for Linux (LS)
Article ID: 2556, created on Oct 29, 2007, last review on Apr 17, 2012
Pro Control Panel Linux
Knowledge ID 1700
Product : WEBppliance for Linux
Version : 3.1
Topic : FAQ
Title Sendmail Security Patch release for WEBppliance 3.1.1 and 3.1.0 for Linux (LS)
Summary Sendmail Security Patch release for WEBppliance 3.1.1 and 3.1.0 for Linux (LS)
Details This security patch resolves the Sendmail vulnerability.
This patch requires WEBppliance 3.1.1 or 3.1.0 for Linux (LS).
Major Feature :
This patch fixes the security vulnerability mentioned below:
1. Sendmail vulnerability may allow remote attackers to gain
root privileges by sending subversive messages.
A buffer overflow in Sendmail 5.79 to 8.12.7 allows remote
attackers to execute arbitrary code using certain formatted
address fields, related to sender and recipient headercomments
as processed by the crackaddr function of headers.c.
Advisory details for the security patch are available at
the following URL: