Friday, March 24, 2006

Cyber Security Alert: Sendmail Race Condition Vulnerability

Cyber Security Alert: Sendmail Race Condition Vulnerability: "Sendmail contains a race condition caused by the improper handling of asynchronous signals. In particular, by forcing the SMTP server to have an I/O timeout at exactly the correct instant, an attacker may be able to execute arbitrary code with the privileges of the Sendmail process. "

No comments: