Fedora Core 4 : sendmail-8.13.7-2.fc4.1 (2006-836)

high Nessus Plugin ID 24153
New! Plugin Severity Now Using CVSS v3

The calculated severity for Plugins has been updated to use CVSS v3 by default. Plugins that do not have a CVSS v3 score will fall back to CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.


The remote Fedora Core host is missing a security update.


- Tue Jul 18 2006 Thomas Woerner <twoerner at redhat.com> 8.13.7-2.fc4.1

- using new syntax for access database (#177566)

- fixed failure message while shutting down sm-client (#119429) resolution: stop sm-client before sendmail

- fixed method to specify persistent queue runners (#126760)

- removed patch backup files from sendmail-cf tree (#152955)

- fixed missing dnl on SMART_HOST define (#166680)

- fixed wrong location of aliases and aliases.db file in aliases man page (#166744)

- enabled CipherList config option for sendmail (#172352)

- added user chowns for /etc/mail/authinfo.db and move check for cf files (#184341)

- fixed Makefile of vacation (#191396) vacation is not included in this sendmail package

- /var/log/mail now belongs to sendmail (#192850)

- using old pam_stack

- Wed Jul 12 2006 Jesse Keating <jkeating at redhat.com>
- 8.13.7-2.1

- rebuild

- Mon Jun 19 2006 Thomas Woerner <twoerner at redhat.com> 8.13.7-2

- dropped reference to Red Hat Linux in sendmail-redhat.mc (#176679)

- Mon Jun 19 2006 Thomas Woerner <twoerner at redhat.com> 8.13.7-1

- new version 8.13.7 (#195282)

- fixes CVE-2006-1173 (VU#146718): possible denial of service issue caused by malformed multipart messages (#195776)

Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.


Update the affected packages.

See Also


Plugin Details

Severity: High

ID: 24153

File Name: fedora_2006-836.nasl

Version: 1.15

Type: local

Agent: unix

Published: 1/17/2007

Updated: 1/11/2021

Dependencies: ssh_get_info.nasl

Vulnerability Information

CPE: p-cpe:/a:fedoraproject:fedora:sendmail, p-cpe:/a:fedoraproject:fedora:sendmail-cf, p-cpe:/a:fedoraproject:fedora:sendmail-debuginfo, p-cpe:/a:fedoraproject:fedora:sendmail-devel, p-cpe:/a:fedoraproject:fedora:sendmail-doc, cpe:/o:fedoraproject:fedora_core:4

Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list

Patch Publication Date: 7/18/2006

Reference Information

FEDORA: 2006-836