CVE Vulnerabilities

CVE-2006-0058

Published: Mar 22, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by triggering timeouts in a way that causes the setjmp and longjmp function calls to be interrupted and modify unexpected memory locations.

Affected Software

NameVendorStart VersionEnd Version
SendmailSendmail8.13.0 (including)8.13.0 (including)
SendmailSendmail8.13.1 (including)8.13.1 (including)
SendmailSendmail8.13.2 (including)8.13.2 (including)
SendmailSendmail8.13.3 (including)8.13.3 (including)
SendmailSendmail8.13.4 (including)8.13.4 (including)
SendmailSendmail8.13.5 (including)8.13.5 (including)
Red Hat Enterprise Linux 3RedHatsendmail-0:8.12.11-4.RHEL3.4*
Red Hat Enterprise Linux 4RedHatsendmail-0:8.13.1-3.RHEL4.3*
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Enterprise Linux ES version 2.1RedHat*
Red Hat Enterprise Linux WS version 2.1RedHat*
Red Hat Linux Advanced Workstation 2.1RedHat*
SendmailUbuntudapper*
SendmailUbuntudevel*
SendmailUbuntuedgy*
SendmailUbuntufeisty*
SendmailUbuntugutsy*

References