CVE Vulnerabilities

CVE-2001-0653

Published: Sep 20, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Sendmail 8.10.0 through 8.11.5, and 8.12.0 beta, allows local users to modify process memory and possibly gain privileges via a large value in the category part of debugger (-d) command line arguments, which is interpreted as a negative number.

Affected Software

NameVendorStart VersionEnd Version
SendmailSendmail8.11.0 (including)8.11.0 (including)
SendmailSendmail8.11.1 (including)8.11.1 (including)
SendmailSendmail8.11.2 (including)8.11.2 (including)
SendmailSendmail8.11.3 (including)8.11.3 (including)
SendmailSendmail8.11.4 (including)8.11.4 (including)
SendmailSendmail8.11.5 (including)8.11.5 (including)
SendmailSendmail8.12-beta10 (including)8.12-beta10 (including)
SendmailSendmail8.12-beta12 (including)8.12-beta12 (including)
SendmailSendmail8.12-beta16 (including)8.12-beta16 (including)
SendmailSendmail8.12-beta5 (including)8.12-beta5 (including)
SendmailSendmail8.12-beta7 (including)8.12-beta7 (including)
Red Hat Linux 5.2RedHat*
Red Hat Linux 6.2RedHat*
Red Hat Linux 7.0RedHat*
Red Hat Linux 7.1RedHat*

References