Package: dbmail
Severity: grave
Tags: security experimental sid
Justification: user security hole

The parent process of dbmail is not dropping privledges and induces a
serious security hole since the user is root.  

-- Dan Weber


-- System Information:
Debian Release: testing/unstable
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.6.5-1-k7
Locale: LANG=en_US, LC_CTYPE=en_US

Attachment: signature.asc
Description: Digital signature

Reply via email to