[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[cobalt-users] Sendmail 'check_relay' E-mail Access Control Features Can Be Bypassed By Remote Users
- Subject: [cobalt-users] Sendmail 'check_relay' E-mail Access Control Features Can Be Bypassed By Remote Users
- From: "aljuhani" <aljuhani@xxxxxxxxx>
- Date: Tue Dec 10 11:12:01 2002
- List-id: Mailing list for users to share thoughts on Sun Cobalt products. <cobalt-users.list.cobalt.com>
Hello List.
Received alert below today from Security Tarcker (SECURITYTRACKER.COM). Not sure what files to patch on a RaQ4 and if the patch is insterted via editor.
---Alert Text Below---
An access control vulnerability was reported in Sendmail. A
remote user with the ability to control a DNS server or spoof the
DNS may be able to bypass a target server's sendmail access
controls and send mail to or via that server.
Impact: Host/resource access via network
Alert: http://securitytracker.com/alerts/2002/Dec/1005748.html
Regards,
aljuhani@xxxxxxxxx