PT-2000-1292 · Sendmail · Sendmail
Published
2000-04-23
·
Updated
2008-09-10
·
CVE-2000-0319
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Sendmail versions 8.10.x
Description
The issue concerns the mail.local component in Sendmail, which fails to properly identify the .
string that marks the end of message text. This allows a remote attacker to potentially cause a denial of service or corrupt mailboxes by sending a message line that is 2047 characters long and ends in .
.
Recommendations
For Sendmail version 8.10.x, update to a version that properly handles the .
string to prevent denial of service or mailbox corruption.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sendmail