Buffer Overflow In Smtp Helo Command In Sendmai vulnerability report
vulnerabilities.aspcode.net
Phase:
Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities.
References
XF:smtp-helo-bo
Votes:
Proposed (Monday, July 26, 1999)
Comments:
MODIFY(2) Baker, Frech | NOOP(1) Wall | REVIEWING(1) Christey
F7:
Frech> (Accept XF reference.) | Our references do not mention hiding activities. This issue can crash the | SMTP server or execute arbitrary byte-code. Is there another reference | available? | Christey> Should this be merged with CVE-1999-0284, which is Sendmail | with SMTP HELO? | Christey> BUGTRAQ:19980522 about sendmail 8.8.8 HELO hole | http://marc.theaimsgroup.com/?l=bugtraq&m=90221101925991&w=2 | BUGTRAQ:19980527 about sendmail 8.8.8 HELO hole | http://marc.theaimsgroup.com/?l=bugtraq&m=90221101926003&w=2 | Baker> Apparently this XF reference is not for this issue, but for the other issue. This should be modified to have the Bugtraq references, and remove the XF reference.
Tagged as
activities
Sendmail
attacker
overflow
command
remote
Buffer
allows
HELO
hide
SMTP