Hi all,

I was conducting some vulnerability scans on my Qube 2 with Nessus and a 
worrying result was found. Nessus reported that SMTP (Sendmail 8.9.3/8.9.2) 
was subject to a buffer overflow in the 'MAIL FROM:' command.

By issuing a long input string i.e. MAIL FROM 
:[EMAIL PROTECTED] would basically stop the sendmail 
daemon.

I am currently coding a script that would do this manually.

Has anyone seen a vulnerability of this kind with sendmail for Qube 2 ?  or 
have I missed a security advisory somewhere ;p

-- Akira
_______________________________________________
cobalt-security mailing list
[EMAIL PROTECTED]
http://list.cobalt.com/mailman/listinfo/cobalt-security

Reply via email to