Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Re: Exploit for sendmail smtpd bug (ver. 8.7-8.8.2).

Re: Exploit for sendmail smtpd bug (ver. 8.7-8.8.2).

From: Bryan Reece <reece_at_taz.nceye.net>
Date: Sun, 17 Nov 1996 19:19:43 -0000

   From: Alan Brown <alan_at_manawatu.gen.nz>

   How many of these exploits are thwarted by setting sendmail.cf's
   O RunAsUser=postmaster switch, making /var/spool/mail and var/spool/mqueue
   664 postmaster.mail and giving postmaster a shell of /bin/false (C
   version, compiled -Bstatic.)

Not quite as many as simply getting rid of sendmail and using
something else. Has there ever been a security-related problem with
qmail?
Received on Nov 17 1996

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos