SUSE-SA:2003:023: sendmail, sendmail-tls
High Nessus Plugin ID 13793
SynopsisThe remote host is missing a vendor-supplied security patch
DescriptionThe remote host is missing the patch for the advisory SUSE-SA:2003:023 (sendmail, sendmail-tls).
sendmail is the most widely used mail transport agent (MTA) in the internet. A remotely exploitable buffer overflow has been found in all versions of sendmail that come with SUSE products. These versions include sendmail-8.11 and sendmail-8.12 releases. sendmail is the MTA subsystem that is installed by default on all SUSE products up to and including SUSE LINUX 8.0 and the SUSE LINUX Enterprise Server 7.
The vulnerability was discovered by Michal Zalewski. It is not related to the vulnerability found by ISS in the first week of March as announced