Title: Sendmail Asynchronous Signal Handling Remote Code Execution Vulnerability
Severity: CRITICAL
Description:
Sendmail is a widely used MTA for UNIX and Microsoft Windows systems.
Sendmail is prone to a remote code-execution vulnerability. This issue arises from an unspecified race-condition error.
The vulnerability resides in the 'sm_syslog()' function due to improper handling of the setjmp/longjmp set of macros with asynchronous signals. Specifically, the issue presents itself when Sendmail processes specially crafted mail data from clients and employs a signal handler to handle timeouts. The signal handler causes certain data elements to stay in an inconsistent state; an attacker can use the elements to write to stack or heap memory.
Remote attackers can leverage this issue to execute arbitrary code with the privileges of the application, which typically runs as superuser.
Versions prior to Sendmail 8.13.6 are vulnerable to this issue.
Affected Products:
- Apple Mac OS X 10.2.0
- Apple Mac OS X 10.2.1
- Apple Mac OS X 10.2.2
- Apple Mac OS X 10.2.3
- Apple Mac OS X 10.2.4
- Apple Mac OS X Server 10.2.0
- Apple Mac OS X Server 10.2.1
- Apple Mac OS X Server 10.2.2
- Apple Mac OS X Server 10.2.3
- Avaya CMS Server 11.0.0
- Avaya CMS Server 12.0.0
- Avaya CMS Server 13.0.0
- Avaya CMS Server 13.1
- Avaya CMS Server 9.0.0
- Avaya Communication Manager Server S8300
- Avaya Communication Manager Server S8500
- Avaya Communication Manager Server S8700
- Avaya Interactive Response
- Avaya Interactive Response 1.2.1
- Avaya Interactive Response 1.3.0
- Caldera OpenLinux Server 3.1.0
- Caldera OpenLinux Server 3.1.1
- Caldera OpenLinux Workstation 3.1.0
- Caldera OpenLinux Workstation 3.1.1
- Compaq Tru64 4.0.0 f PK7 (BL18)
- Compaq Tru64 4.0.0 g PK3 (BL17)
- Compaq Tru64 5.0.0 a PK3 (BL17)
- Compaq Tru64 5.1.0
- Compaq Tru64 5.1.0 B
- Compaq Tru64 5.1.0 PK5 (BL19)
- Compaq Tru64 5.1.0 a
- Conectiva Linux 10.0.0
- Conectiva Linux 6.0.0
- Conectiva Linux 7.0.0
- Conectiva Linux 8.0.0
- Conectiva Linux 9.0.0
- Conectiva Linux Enterprise Edition 1.0.0
- Debian Linux 2.2.0
- Debian Linux 2.2.0 68k
- Debian Linux 2.2.0 IA-32
- Debian Linux 2.2.0 alpha
- Debian Linux 2.2.0 arm
- Debian Linux 2.2.0 powerpc
- Debian Linux 2.2.0 sparc
- Debian Linux 3.0.0
- Debian Linux 3.0.0 alpha
- Debian Linux 3.0.0 arm
- Debian Linux 3.0.0 hppa
- Debian Linux 3.0.0 ia-32
- Debian Linux 3.0.0 ia-64
- Debian Linux 3.0.0 m68k
- Debian Linux 3.0.0 mips
- Debian Linux 3.0.0 mipsel
- Debian Linux 3.0.0 ppc
- Debian Linux 3.0.0 s/390
- Debian Linux 3.0.0 sparc
- Debian Linux 3.1.0
- Debian Linux 3.1.0 alpha
- Debian Linux 3.1.0 amd64
- Debian Linux 3.1.0 arm
- Debian Linux 3.1.0 hppa
- Debian Linux 3.1.0 ia-32
- Debian Linux 3.1.0 ia-64
- Debian Linux 3.1.0 m68k
- Debian Linux 3.1.0 mips
- Debian Linux 3.1.0 mipsel
- Debian Linux 3.1.0 ppc
- Debian Linux 3.1.0 s/390
- Debian Linux 3.1.0 sparc
- F-Secure Messaging Security Gateway P600 3.2.4
- F-Secure Messaging Security Gateway P800 3.2.4
- F-Secure Messaging Security Gateway X200 3.1.0
- FreeBSD FreeBSD 1.1.5 .1
- FreeBSD FreeBSD 2.0.0
- FreeBSD FreeBSD 2.0.5
- FreeBSD FreeBSD 2.1.0
- FreeBSD FreeBSD 2.1.0 x
- FreeBSD FreeBSD 2.1.5
- FreeBSD FreeBSD 2.1.6
- FreeBSD FreeBSD 2.1.6 .1
- FreeBSD FreeBSD 2.1.7 .1
- FreeBSD FreeBSD 2.2.0
- FreeBSD FreeBSD 2.2.0 x
- FreeBSD FreeBSD 2.2.2
- FreeBSD FreeBSD 2.2.3
- FreeBSD FreeBSD 2.2.4
- FreeBSD FreeBSD 2.2.5
- FreeBSD FreeBSD 2.2.6
- FreeBSD FreeBSD 2.2.8
- FreeBSD FreeBSD 2.x
- FreeBSD FreeBSD 3.0.0
- FreeBSD FreeBSD 3.0.0 -RELENG
- FreeBSD FreeBSD 3.1.0
- FreeBSD FreeBSD 3.1.0 x
- FreeBSD FreeBSD 3.2.0
- FreeBSD FreeBSD 3.2.0 x
- FreeBSD FreeBSD 3.3.0
- FreeBSD FreeBSD 3.3.0 x
- FreeBSD FreeBSD 3.4.0
- FreeBSD FreeBSD 3.4.0 x
- FreeBSD FreeBSD 3.5.0
- FreeBSD FreeBSD 3.5.0 -STABLE
- FreeBSD FreeBSD 3.5.0 -STABLEpre050201
- FreeBSD FreeBSD 3.5.0 -STABLEpre122300
- FreeBSD FreeBSD 3.5.0 x
- FreeBSD FreeBSD 3.5.1
- FreeBSD FreeBSD 3.5.1 -RELEASE
- FreeBSD FreeBSD 3.5.1 -STABLE
- FreeBSD FreeBSD 3.5.1 -STABLEpre2001-07-20
- FreeBSD FreeBSD 3.x
- FreeBSD FreeBSD 4.0.0
- FreeBSD FreeBSD 4.0.0 -RELENG
- FreeBSD FreeBSD 4.0.0 .x
- FreeBSD FreeBSD 4.0.0 alpha
- FreeBSD FreeBSD 4.1.0
- FreeBSD FreeBSD 4.1.1
- FreeBSD FreeBSD 4.1.1 -RELEASE
- FreeBSD FreeBSD 4.1.1 -STABLE
- FreeBSD FreeBSD 4.10-PRERELEASE
- FreeBSD FreeBSD 4.10.0
- FreeBSD FreeBSD 4.10.0 -RELEASE
- FreeBSD FreeBSD 4.10.0 -RELEASE-p8
- FreeBSD FreeBSD 4.10.0 -RELENG
- FreeBSD FreeBSD 4.11.0 -RELEASE-p3
- FreeBSD FreeBSD 4.11.0 -RELENG
- FreeBSD FreeBSD 4.11.0 -STABLE
- FreeBSD FreeBSD 4.2.0
- FreeBSD FreeBSD 4.2.0 -RELEASE
- FreeBSD FreeBSD 4.2.0 -STABLE
- FreeBSD FreeBSD 4.2.0 -STABLEpre050201
- FreeBSD FreeBSD 4.2.0 -STABLEpre122300
- FreeBSD FreeBSD 4.3.0
- FreeBSD FreeBSD 4.3.0 -RELEASE
- FreeBSD FreeBSD 4.3.0 -RELEASE-p38
- FreeBSD FreeBSD 4.3.0 -RELENG
- FreeBSD FreeBSD 4.3.0 -STABLE
- FreeBSD FreeBSD 4.4.0
- FreeBSD FreeBSD 4.4.0 -RELEASE-p42
- FreeBSD FreeBSD 4.4.0 -RELENG
- FreeBSD FreeBSD 4.4.0 -RELENG
- FreeBSD FreeBSD 4.4.0 -STABLE
- FreeBSD FreeBSD 4.5.0
- FreeBSD FreeBSD 4.5.0 -RELEASE
- FreeBSD FreeBSD 4.5.0 -RELEASE-p32
- FreeBSD FreeBSD 4.5.0 -RELENG
- FreeBSD FreeBSD 4.5.0 -STABLE
- FreeBSD FreeBSD 4.5.0 -STABLEpre2002-03-07
- FreeBSD FreeBSD 4.6.0
- FreeBSD FreeBSD 4.6.0 -RELEASE
- FreeBSD FreeBSD 4.6.0 -RELEASE-p20
- FreeBSD FreeBSD 4.6.0 -RELENG
- FreeBSD FreeBSD 4.6.0 -STABLE
- FreeBSD FreeBSD 4.6.2
- FreeBSD FreeBSD 4.7.0
- FreeBSD FreeBSD 4.7.0 -RELEASE
- FreeBSD FreeBSD 4.7.0 -RELEASE-p17
- FreeBSD FreeBSD 4.7.0 -RELENG
- FreeBSD FreeBSD 4.7.0 -STABLE
- FreeBSD FreeBSD 4.8.0
- FreeBSD FreeBSD 4.8.0 -PRERELEASE
- FreeBSD FreeBSD 4.8.0 -RELEASE-p7
- FreeBSD FreeBSD 4.8.0 -RELENG
- FreeBSD FreeBSD 4.9.0
- FreeBSD FreeBSD 4.9.0 -PRERELEASE
- FreeBSD FreeBSD 4.9.0 -RELENG
- FreeBSD FreeBSD 5.0.0
- FreeBSD FreeBSD 5.0.0 -RELEASE-p14
- FreeBSD FreeBSD 5.0.0 -RELENG
- FreeBSD FreeBSD 5.0.0 alpha
- FreeBSD FreeBSD 5.1.0
- FreeBSD FreeBSD 5.1.0 -RELEASE
- FreeBSD FreeBSD 5.1.0 -RELEASE-p5
- FreeBSD FreeBSD 5.1.0 -RELEASE/Alpha
- FreeBSD FreeBSD 5.1.0 -RELENG
- FreeBSD FreeBSD 5.2.0
- FreeBSD FreeBSD 5.2.0 -RELEASE
- FreeBSD FreeBSD 5.2.0 -RELENG
- FreeBSD FreeBSD 5.2.1 -RELEASE
- FreeBSD FreeBSD 5.3.0
- FreeBSD FreeBSD 5.3.0 -RELEASE
- FreeBSD FreeBSD 5.3.0 -RELENG
- FreeBSD FreeBSD 5.3.0 -STABLE
- FreeBSD FreeBSD 5.4-STABLE
- FreeBSD FreeBSD 5.4.0 -PRERELEASE
- FreeBSD FreeBSD 5.4.0 -RELEASE
- FreeBSD FreeBSD 5.4.0 -RELENG
- FreeBSD FreeBSD 6.0.0 -RELEASE
- FreeBSD FreeBSD 6.0.0 -STABLE
- Gentoo Linux
- HP HP-UX 11.0.0
- HP HP-UX 11.11.0
- HP HP-UX 11.23.0
- HP HP-UX B.11.00
- HP HP-UX B.11.04
- HP HP-UX B.11.11
- HP HP-UX B.11.11
- HP HP-UX B.11.23
- HP Internet Explorer 6.5
- HP Internet Express 6.3
- HP Internet Express 6.4
- HP MPE/iX 7.0.0
- HP MPE/iX 7.5.0
- HP Tru64 4.0.0 F PK8
- HP Tru64 4.0.0 G PK4
- HP Tru64 5.1.0 A PK6
- HP Tru64 5.1.0 B-2 PK4
- HP Tru64 5.1.0 B-3
- IBM AIX 4.3.3
- IBM AIX 5.1.0
- IBM AIX 5.1.0 L
- IBM AIX 5.2
- IBM AIX 5.2.0 L
- IBM AIX 5.3
- IBM AIX 5.3.0 L
- IBM Hardware Management Console (HMC) 5.2.1
- Immunix Immunix OS 7.0.0
- Linux kernel 2.4.19
- Linux kernel 2.4.21
- Linux kernel 2.6.5
- MandrakeSoft Corporate Server 2.1.0
- MandrakeSoft Corporate Server 3.0.0
- MandrakeSoft Corporate Server 3.0.0 x86_64
- MandrakeSoft Linux Mandrake 10.2.0
- MandrakeSoft Linux Mandrake 10.2.0 x86_64
- MandrakeSoft Linux Mandrake 2006.0.0
- MandrakeSoft Linux Mandrake 2006.0.0 x86_64
- MandrakeSoft Linux Mandrake 8.0.0
- MandrakeSoft Linux Mandrake 8.0.0 ppc
- MandrakeSoft Linux Mandrake 8.1.0
- MandrakeSoft Linux Mandrake 8.1.0 ia64
- MandrakeSoft Linux Mandrake 8.2.0
- MandrakeSoft Linux Mandrake 8.2.0 ppc
- MandrakeSoft Linux Mandrake 9.0.0
- MandrakeSoft Multi Network Firewall 2.0.0
- NetBSD NetBSD 1.6.0
- NetBSD NetBSD 1.6.0 Beta
- NetBSD NetBSD 1.6.1
- NetBSD NetBSD 1.6.2
- NetBSD NetBSD 2.0.0
- NetBSD NetBSD 2.0.1
- NetBSD NetBSD 2.0.2
- NetBSD NetBSD 2.0.3
- NetBSD NetBSD 2.1.0
- NetBSD NetBSD 3.0.0
- Nortel Networks W-NMS-CNM 1.0
- Nortel Networks W-NMS-GPRS 4.2
- Nortel Networks W-NMS-UMTS 4.2
- OpenBSD OpenBSD 2.0.0
- OpenBSD OpenBSD 2.1.0
- OpenBSD OpenBSD 2.2.0
- OpenBSD OpenBSD 2.3.0
- OpenBSD OpenBSD 2.4.0
- OpenBSD OpenBSD 2.5.0
- OpenBSD OpenBSD 2.6.0
- OpenBSD OpenBSD 2.7.0
- OpenBSD OpenBSD 2.8.0
- OpenBSD OpenBSD 2.9.0
- OpenBSD OpenBSD 3.0
- OpenBSD OpenBSD 3.1
- OpenBSD OpenBSD 3.2
- OpenBSD OpenBSD 3.3
- OpenBSD OpenBSD 3.4
- OpenBSD OpenBSD 3.5.0
- OpenBSD OpenBSD 3.6
- OpenBSD OpenBSD 3.7
- OpenBSD OpenBSD 3.8
- OpenPKG OpenPKG 1.2.0
- OpenPKG OpenPKG 2.3.0
- OpenPKG OpenPKG 2.4.0
- OpenPKG OpenPKG 2.5.0
- RedHat Advanced Workstation for the Itanium Processor 2.1.0
- RedHat Advanced Workstation for the Itanium Processor 2.1.0 IA64
- RedHat Enterprise Linux AS 2.1
- RedHat Enterprise Linux AS 2.1 IA64
- RedHat Enterprise Linux AS 3
- RedHat Enterprise Linux AS 4
- RedHat Enterprise Linux ES 2.1
- RedHat Enterprise Linux ES 2.1 IA64
- RedHat Enterprise Linux ES 3
- RedHat Enterprise Linux ES 4
- RedHat Enterprise Linux WS 2.1
- RedHat Enterprise Linux WS 2.1 IA64
- RedHat Enterprise Linux WS 3
- RedHat Enterprise Linux WS 4
- RedHat Fedora Core1
- RedHat Fedora Core2
- RedHat Fedora Core3
- RedHat Fedora Core4
- RedHat Fedora Core5
- RedHat Linux 6.2.0 i386
- RedHat Linux 7.0.0
- RedHat Linux 7.0.0 alpha
- RedHat Linux 7.0.0 i386
- RedHat Linux 7.0.0 sparc
- RedHat Linux 7.1.0
- RedHat Linux 7.1.0 alpha
- RedHat Linux 7.1.0 i386
- RedHat Linux 7.1.0 ia64
- RedHat Linux 7.2.0 i386
- RedHat Linux 7.2.0 ia64
- RedHat Linux 7.3.0 i386
- RedHat Linux 8.0.0 i386
- RedHat Linux 9.0.0 i386
- S.u.S.E. Linux 7.1.0
- S.u.S.E. Linux 7.1.0 alpha
- S.u.S.E. Linux 7.1.0 ppc
- S.u.S.E. Linux 7.1.0 sparc
- S.u.S.E. Linux 7.1.0 x86
- S.u.S.E. Linux 7.2.0
- S.u.S.E. Linux 7.2.0 i386
- S.u.S.E. Linux 7.3.0
- S.u.S.E. Linux 7.3.0 i386
- S.u.S.E. Linux 7.3.0 ppc
- S.u.S.E. Linux 7.3.0 sparc
- S.u.S.E. Linux 8.0.0
- S.u.S.E. Linux 8.0.0 i386
- S.u.S.E. Linux 8.1.0
- S.u.S.E. Linux Enterprise Server 8
- S.u.S.E. Linux Enterprise Server 9
- S.u.S.E. Linux Personal 10.0.0 OSS
- S.u.S.E. Linux Personal 9.1.0
- S.u.S.E. Linux Personal 9.1.0 x86_64
- S.u.S.E. Linux Personal 9.2.0
- S.u.S.E. Linux Personal 9.2.0 x86_64
- S.u.S.E. Linux Personal 9.3.0
- S.u.S.E. Linux Personal 9.3.0 x86_64
- S.u.S.E. Linux Professional 10.0.0 OSS
- S.u.S.E. Linux Professional 9.1.0
- S.u.S.E. Linux Professional 9.1.0 x86_64
- S.u.S.E. Linux Professional 9.2.0
- S.u.S.E. Linux Professional 9.2.0 x86_64
- S.u.S.E. Linux Professional 9.3.0
- S.u.S.E. Linux Professional 9.3.0 x86_64
- S.u.S.E. UnitedLinux 1.0.0
- SCO Open Server 5.0.4
- SCO Open Server 5.0.5
- SCO Open Server 5.0.6
- SCO Open Server 5.0.6 a
- SCO Open Server 6.0.0
- SCO Unixware 7.1.3
- SCO Unixware 7.1.4
- SGI IRIX 6.5.0
- SGI IRIX 6.5.1
- SGI IRIX 6.5.10f
- SGI IRIX 6.5.10m
- SGI IRIX 6.5.11f
- SGI IRIX 6.5.11m
- SGI IRIX 6.5.12 f
- SGI IRIX 6.5.12 m
- SGI IRIX 6.5.13 f
- SGI IRIX 6.5.13 m
- SGI IRIX 6.5.14 f
- SGI IRIX 6.5.14 m
- SGI IRIX 6.5.15f
- SGI IRIX 6.5.15m
- SGI IRIX 6.5.16f
- SGI IRIX 6.5.16m
- SGI IRIX 6.5.17f
- SGI IRIX 6.5.17m
- SGI IRIX 6.5.18f
- SGI IRIX 6.5.18m
- SGI IRIX 6.5.19
- SGI IRIX 6.5.19f
- SGI IRIX 6.5.19m
- SGI IRIX 6.5.2
- SGI IRIX 6.5.20
- SGI IRIX 6.5.20 f
- SGI IRIX 6.5.20 m
- SGI IRIX 6.5.21
- SGI IRIX 6.5.21 f
- SGI IRIX 6.5.21 m
- SGI IRIX 6.5.22
- SGI IRIX 6.5.22 m
- SGI IRIX 6.5.23
- SGI IRIX 6.5.23 m
- SGI IRIX 6.5.24
- SGI IRIX 6.5.24 m
- SGI IRIX 6.5.25
- SGI IRIX 6.5.26
- SGI IRIX 6.5.27
- SGI IRIX 6.5.28
- SGI IRIX 6.5.29
- SGI IRIX 6.5.3
- SGI IRIX 6.5.4
- SGI IRIX 6.5.5
- SGI IRIX 6.5.6
- SGI IRIX 6.5.7
- SGI IRIX 6.5.7f
- SGI IRIX 6.5.7m
- SGI IRIX 6.5.8
- SGI IRIX 6.5.8f
- SGI IRIX 6.5.8m
- SGI IRIX 6.5.9f
- SGI IRIX 6.5.9m
- SGI ProPack 3.0.0 SP6
- SOTLinux SOTLinux 2003 Desktop 0.0.0
- SOTLinux SOTLinux 2003 Server 0.0.0
- Sendmail Consortium Sendmail 8.10.0
- Sendmail Consortium Sendmail 8.10.1
- Sendmail Consortium Sendmail 8.10.2
- Sendmail Consortium Sendmail 8.11.0
- Sendmail Consortium Sendmail 8.11.1
- Sendmail Consortium Sendmail 8.11.2
- Sendmail Consortium Sendmail 8.11.3
- Sendmail Consortium Sendmail 8.11.4
- Sendmail Consortium Sendmail 8.11.5
- Sendmail Consortium Sendmail 8.11.6
- Sendmail Consortium Sendmail 8.11.7
- Sendmail Consortium Sendmail 8.12.0 .0
- Sendmail Consortium Sendmail 8.12.0 beta10
- Sendmail Consortium Sendmail 8.12.0 beta12
- Sendmail Consortium Sendmail 8.12.0 beta16
- Sendmail Consortium Sendmail 8.12.0 beta5
- Sendmail Consortium Sendmail 8.12.0 beta7
- Sendmail Consortium Sendmail 8.12.1
- Sendmail Consortium Sendmail 8.12.10
- Sendmail Consortium Sendmail 8.12.11
- Sendmail Consortium Sendmail 8.12.2
- Sendmail Consortium Sendmail 8.12.3
- Sendmail Consortium Sendmail 8.12.4
- Sendmail Consortium Sendmail 8.12.5
- Sendmail Consortium Sendmail 8.12.6
- Sendmail Consortium Sendmail 8.12.7
- Sendmail Consortium Sendmail 8.12.8
- Sendmail Consortium Sendmail 8.12.9
- Sendmail Consortium Sendmail 8.13.3
- Sendmail Consortium Sendmail 8.13.4
- Sendmail Consortium Sendmail 8.13.5
- Sendmail Consortium Sendmail 8.8.8
- Sendmail Consortium Sendmail 8.9.0.0
- Sendmail Consortium Sendmail 8.9.1
- Sendmail Consortium Sendmail 8.9.2
- Sendmail Consortium Sendmail 8.9.3
- Slackware Linux -current
- Slackware Linux 10.0.0
- Slackware Linux 10.1.0
- Slackware Linux 10.2.0
- Slackware Linux 8.1.0
- Slackware Linux 9.0.0
- Slackware Linux 9.1.0
- Sun Cobalt Qube3 4000WG
- Sun Cobalt RaQ 4
- Sun Cobalt RaQ 550
- Sun Cobalt RaQ XTR
- Sun Cobalt RaQ XTR 3500R
- Sun Cobalt RaQ4 3001R
- Sun Linux 5.0.0
- Sun Linux 5.0.3
- Sun Solaris 10
- Sun Solaris 10.0_x86
- Sun Solaris 7.0
- Sun Solaris 7.0_x86
- Sun Solaris 8
- Sun Solaris 8_x86
- Sun Solaris 9
- Sun Solaris 9_x86
- Turbolinux Appliance Server 1.0.0 Hosting Edition
- Turbolinux Appliance Server 1.0.0 Workgroup Edition
- Turbolinux Appliance Server 2.0
- Turbolinux Appliance Server Hosting Edition 1.0.0
- Turbolinux Appliance Server Workgroup Edition 1.0.0
- Turbolinux Turbolinux Workstation 7.0.0
- Turbolinux Turbolinux Workstation 7.0.0
- Turbolinux Turbolinux Workstation 8.0.0
- Turbolinux Turbolinux Workstation 8.0.0
- Yellow Dog Linux 3.0.0
References:
- Avaya: ASA-2006-074 - sendmail security update (RHSA-2006-0264 & RHSA-2006-0265)
- Avaya: ASA-2006-078 - Sun Alert Notifications from Sun Weekly Report dated Mar 25, 2006
- F-Secure: F-Secure Security Bulletin FSC-2006-2
- HP: HPSBTU02116 SSRT061135 rev.1 - HP Tru64 UNIX and HP Internet Express for Tru64 U
- IBM: APAR Number: IY82993
- IBM: Corrective Service Security FIX - MH00688 (PTF)
- IBM: Cumulative history and Readme for use with HMC V5 R2 and V5 R2.1
- Internet Security Systems: Sendmail Remote Signal Handling Vulnerability
- Nortel Networks: [ BULLETIN ] Potential Vulnerability in Sendmail 8.12 - VU#834865
- OpenBSD: 001: SECURITY FIX: March 25, 2006
- RedHat: RHSA-2006:0264-8 - sendmail security update
- RedHat: RHSA-2006:0265-9 - sendmail security update
- Sendmail: Sendmail MTA Security Vulnerability
- Sendmail Consortium: Sendmail 8.13.6
- Sendmail Consortium: Sendmail Homepage
- Sun: Sun Alert ID: 102262
- Sun: Sun Alert ID: 102324
- US-CERT: Technical Cyber Security Alert TA06-081A - Sendmail Race Condition Vulnerability
- US-CERT: Vulnerability Note VU#834865 - Sendmail contains a race condition
- rapturesecurity.org: exploiting_sendmail
Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.