US-CERT Technical Cyber Security Alert TA06-081A -- Sendmail Race Condition Vulnerability (fwd)

Tres Seaver tseaver at palladion.com
Thu Mar 23 01:30:17 UTC 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Kenneth Porter wrote:
> Main alert page: <http://www.kb.cert.org/vuls/id/834865>
> 
> Fedora details: <http://www.kb.cert.org/vuls/id/MIMG-6MPU9N>
> 
>> From the summary:
> 
> 
>   A race condition in Sendmail may allow a remote attacker to execute
>   arbitrary code.
> 
> For those of us accepting mail from outside on pre-FC4 Fedora, are any
> updates in the pipe to address this?

How about this:

  $ sudo yum install postfix


Tres.
- --
===================================================================
Tres Seaver          +1 202-558-7113          tseaver at palladion.com
Palladion Software   "Excellence by Design"    http://palladion.com
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFEIfop+gerLs4ltQ4RAnY5AKC1fekZzdc1duYWXol7zcXcOYozowCdG9NV
LCrFO0RAZHHwByoTABf29qQ=
=75OE
-----END PGP SIGNATURE-----




More information about the fedora-legacy-list mailing list