The Sendmail 8.12.3 package in Debian GNU/Linux 3.0 does not securely create temporary files, which could allow local users to gain additional privileges via (1) expn, (2) checksendmail, or (3) doublebounce.pl.
References
Configurations
History
20 Nov 2024, 23:44
Type | Values Removed | Values Added |
---|---|---|
References | () http://bugs.debian.org/496408 - | |
References | () http://dev.gentoo.org/~rbu/security/debiantemp/sendmail-base - | |
References | () http://www.debian.org/security/2003/dsa-305 - Patch | |
References | () http://www.openwall.com/lists/oss-security/2008/10/30/2 - | |
References | () https://bugs.gentoo.org/show_bug.cgi?id=235770 - |
Information
Published : 2003-05-15 04:00
Updated : 2024-11-20 23:44
NVD link : CVE-2003-0308
Mitre link : CVE-2003-0308
CVE.ORG link : CVE-2003-0308
JSON object : View
Products Affected
debian
- debian_linux
sendmail
- sendmail
CWE