Use-after-free vulnerability in Sendmail before 8.13.8 allows remote attackers to...
Vulnerability Description
Use-after-free vulnerability in Sendmail before 8.13.8 allows remote attackers to cause a denial of service (crash) via a long "header line", which causes a previously freed variable to be referenced. NOTE: the original developer has disputed the severity of this issue, saying "The only denial of service that is possible here is to fill up the disk with core dumps if the OS actually generates different core dumps (which is unlikely)... the bug is in the shutdown code (finis()) which leads directly to exit(3), i.e., the process would terminate anyway, no mail delivery or receiption is affected."
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-4434
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.openbsd.org/errata.html#sendmail3
- http://www.attrition.org/pipermail/vim/2006-August/000999.html
- http://securitytracker.com/id?1016753
- http://secunia.com/advisories/21637
- http://www.vupen.com/english/advisories/2006/3994
- http://www.osvdb.org/28193
- http://secunia.com/advisories/21749
- http://secunia.com/advisories/21700
- http://www.debian.org/security/2006/dsa-1164
- http://secunia.com/advisories/21641
- http://www.sendmail.org/releases/8.13.8.html
- http://www.vupen.com/english/advisories/2006/3393
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:156
- http://www.securityfocus.com/bid/19714
- http://www.novell.com/linux/security/advisories/2006_21_sr.html
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-102664-1
- http://secunia.com/advisories/22369
- http://www.openbsd.org/errata38.html#sendmail3
- http://secunia.com/advisories/21696
More from sendmail
View All →Affected Vendor
sendmail
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.