sendmail: insecure temporary files
| Package(s): | sendmail | CVE #(s): | |||||
| Created: | May 16, 2003 | Updated: | May 20, 2003 | ||||
| Description: | Paul Szabo discovered bugs in three scripts included in the sendmail package where temporary files were created insecurely (expn, checksendmail and doublebounce.pl). These bugs could allow an attacker to gain the privileges of a user invoking the script (including root). | ||||||
| Alerts: |
| ||||||
