New errata item: SA-03:04.

This commit is contained in:
Bruce A. Mah 2003-03-03 18:20:00 +00:00
parent 9e3377a335
commit f5bc71ea34
Notes: svn2git 2020-12-20 02:59:44 +00:00
svn path=/head/; revision=111834

View file

@ -133,6 +133,14 @@
given in security advisory <ulink
url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:03.syncookies.asc">FreeBSD-SA-03:03</ulink>.</para>
<para>Due to a buffer overflow in header parsing, a remote
attacker could create a specially crafted message that may cause
<application>sendmail</application> to execute arbitrary code
with the privileges of the user running sendmail, typically
<username>root</username>. More information, including pointers
to patches, can be found in security advisory <ulink
url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:04.sendmail.asc">FreeBSD-SA-03:04</ulink>.</para>
</sect1>
<sect1 id="late-news">