Description
Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.
Affected products
- bsdi / bsd_os2.1 – 2.1
- digital / osf_11.3.2 – 1.3.2
- eric_allman / sendmail8.7.2 – 8.7.2
- eric_allman / sendmail8.7.3 – 8.7.3
- eric_allman / sendmail8.7.4 – 8.7.4
- eric_allman / sendmail8.7.5 – 8.7.5
- eric_allman / sendmail8.6 – 8.6
- eric_allman / sendmail8.7.1 – 8.7.1
- FreeBSD / FreeBSD2.1.5 – 2.1.5
- HP / hp-ux10.01 – 10.01
- HP / hp-ux10.10 – 10.10
- HP / hp-ux10.20 – 10.20
- ibm / aix3.2 – 3.2
- ibm / aix4.1 – 4.1
- ibm / aix4.2 – 4.2
- RedHat / linux3.0.3 – 3.0.3
- sco / internet_faststart1.0 – 1.0
- sco / openserver5.0 – 5.0
- sco / openserver5.0.2 – 5.0.2