CVE Vulnerabilities

CVE-2006-0058

Published: Mar 22, 2006 | Modified: Oct 19, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by triggering timeouts in a way that causes the setjmp and longjmp function calls to be interrupted and modify unexpected memory locations.

Affected Software

Name Vendor Start Version End Version
Sendmail Sendmail 8.13.0 (including) 8.13.0 (including)
Sendmail Sendmail 8.13.1 (including) 8.13.1 (including)
Sendmail Sendmail 8.13.2 (including) 8.13.2 (including)
Sendmail Sendmail 8.13.3 (including) 8.13.3 (including)
Sendmail Sendmail 8.13.4 (including) 8.13.4 (including)
Sendmail Sendmail 8.13.5 (including) 8.13.5 (including)
Red Hat Enterprise Linux 3 RedHat sendmail-0:8.12.11-4.RHEL3.4 *
Red Hat Enterprise Linux 4 RedHat sendmail-0:8.13.1-3.RHEL4.3 *
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 RedHat *
Red Hat Enterprise Linux ES version 2.1 RedHat *
Red Hat Enterprise Linux WS version 2.1 RedHat *
Red Hat Linux Advanced Workstation 2.1 RedHat *
Sendmail Ubuntu dapper *
Sendmail Ubuntu devel *
Sendmail Ubuntu edgy *
Sendmail Ubuntu feisty *
Sendmail Ubuntu gutsy *

References