Debian DSA-305-1 : sendmail - insecure temporary files

This script is Copyright (C) 2004-2013 Tenable Network Security, Inc.


Synopsis :

The remote Debian host is missing a security-related update.

Description :

Paul Szabo discovered bugs in three scripts included in the sendmail
package where temporary files were created insecurely (expn,
checksendmail and doublebounce.pl). These bugs could allow an attacker
to gain the privileges of a user invoking the script (including root).

See also :

http://www.debian.org/security/2003/dsa-305

Solution :

For the stable distribution (woody) these problems have been fixed in
version 8.12.3-6.4.

For the old stable distribution (potato) these problems have been
fixed in version 8.9.3-26.1.

We recommend that you update your sendmail package.

Risk factor :

High / CVSS Base Score : 7.2
(CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 5.3
(CVSS2#E:U/RL:OF/RC:C)
Public Exploit Available : false

Family: Debian Local Security Checks

Nessus Plugin ID: 15142 (debian_DSA-305.nasl)

Bugtraq ID: 7614

CVE ID: CVE-2003-0308