mail.local in Sendmail 8.10.x does not properly identify the .n string which identifies the end of message text, which allows a remote attacker to cause a denial of service or corrupt mailboxes via a message line that is 2047 characters long and ends in .n.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sendmail | Eric_allman | 5.58 (including) | 5.58 (including) |
Sendmail | Eric_allman | 5.59 (including) | 5.59 (including) |
Sendmail | Eric_allman | 8.6.x (including) | 8.6.x (including) |
Sendmail | Eric_allman | 8.7.1 (including) | 8.7.1 (including) |
Sendmail | Eric_allman | 8.7.2 (including) | 8.7.2 (including) |
Sendmail | Eric_allman | 8.7.3 (including) | 8.7.3 (including) |
Sendmail | Eric_allman | 8.7.4 (including) | 8.7.4 (including) |
Sendmail | Eric_allman | 8.7.5 (including) | 8.7.5 (including) |
Sendmail | Eric_allman | 8.7.6 (including) | 8.7.6 (including) |
Sendmail | Eric_allman | 8.7.x (including) | 8.7.x (including) |
Sendmail | Eric_allman | 8.8 (including) | 8.8 (including) |
Sendmail | Eric_allman | 8.8.1 (including) | 8.8.1 (including) |
Sendmail | Eric_allman | 8.8.2 (including) | 8.8.2 (including) |
Sendmail | Eric_allman | 8.8.3 (including) | 8.8.3 (including) |
Sendmail | Eric_allman | 8.8.4 (including) | 8.8.4 (including) |
Sendmail | Eric_allman | 8.8.5 (including) | 8.8.5 (including) |
Sendmail | Eric_allman | 8.8.x (including) | 8.8.x (including) |
Sendmail | Eric_allman | 8.9.1 (including) | 8.9.1 (including) |
Sendmail | Eric_allman | 8.9.3 (including) | 8.9.3 (including) |