PT-2002-3135 · Sendmail · Sendmail

Publicado

2002-12-31

·

Atualizado

2008-09-05

·

CVE-2002-2423

CVSS v2.0

6.4

Média

VetorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Sendmail versions 8.12.0 through 8.12.6
Description The issue allows remote attackers to prevent the IP address from being logged via a long IDENT response, due to log messages longer than 100 characters being truncated.
Recommendations For Sendmail versions 8.12.0 through 8.12.6, update to a version that addresses this issue to prevent IP addresses from being omitted in log messages due to truncation.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2002-2423

Produtos afetados

Sendmail