- Community Home
- >
- Servers and Operating Systems
- >
- HPE BladeSystem
- >
- Legacy
- >
- Appliance Servers
- >
- Re: Sendmail Critical Vulnerability
Categories
Company
Local Language
Forums
Discussions
- Integrity Servers
- Server Clustering
- HPE NonStop Compute
- HPE Apollo Systems
- High Performance Computing
Knowledge Base
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Knowledge Base
Forums
Discussions
- Cloud Mentoring and Education
- Software - General
- HPE OneView
- HPE Ezmeral Software platform
- HPE OpsRamp Software
Knowledge Base
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-04-2003 07:47 AM
03-04-2003 07:47 AM
Sendmail Critical Vulnerability
- Tags:
- sendmail
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-09-2003 02:38 AM
03-09-2003 02:38 AM
Re: Sendmail Critical Vulnerability
Sean
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-09-2003 10:20 AM
03-09-2003 10:20 AM
Re: Sendmail Critical Vulnerability
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-11-2003 12:52 AM
03-11-2003 12:52 AM
Re: Sendmail Critical Vulnerability
just compiling the new sendmail sources and replacing the binaries won??t work, cause Sendmail 8.12 uses two mailqueues. So you have to rebuild the sendmail.cf and make some other configuration changes.
The easiest way is to patch your current Sendmail with an rpm-package from redhat (if you have the redhat-distribution installed)
Download the patch and install it with "rpm -u package-name". Then restart sendmail. Be sure to make an backup copy of /etc/mail (whole directory) and /etc/sendmail.cf
HtH
Thomas
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-13-2003 06:28 AM
03-13-2003 06:28 AM
Re: Sendmail Critical Vulnerability
follow next link to the HPUX forum, the link is specified call about sendmail Vulnerability.
http://forums.itrc.hp.com/cm/QuestionAnswer/1,,0x82599c196a4bd71190080090279cd0f9,00.html
Robert-Jan.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-13-2003 09:33 AM
03-13-2003 09:33 AM
Re: Sendmail Critical Vulnerability
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-13-2003 01:25 PM
03-13-2003 01:25 PM
Re: Sendmail Critical Vulnerability
if i'm not mistaken,
# uname -a
or
# uname -v
Robert-Jan.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-13-2003 07:08 PM
03-13-2003 07:08 PM
Re: Sendmail Critical Vulnerability
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-14-2003 12:39 AM
03-14-2003 12:39 AM
Re: Sendmail Critical Vulnerability
how about downloading and installing sysinfo ?
http://www.magnicomp.com/sysinfo/sysinfo.shtml
Hope it helps,
Robert-Jan.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-16-2003 01:47 PM
03-16-2003 01:47 PM
Re: Sendmail Critical Vulnerability
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-16-2003 07:48 PM
03-16-2003 07:48 PM
Re: Sendmail Critical Vulnerability
We are very close to simply buying a cobalt and being done with this crapola.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-17-2003 10:59 PM
03-17-2003 10:59 PM
Re: Sendmail Critical Vulnerability
the rpm program offers an option, to test the dependencies of an rpm package (i.e. rpm -U --test rpm-package)
IMHO you could upgrade to 8.11.6-126 (where 126 is the patch level), whithout config changes. This version is secured against the Vulnerability.
sendmail 8.12.x is working different to the prior versions and so you have to configure it again, if you upgrade to this version.
cu
Thomas
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-18-2003 02:40 PM
03-18-2003 02:40 PM
Re: Sendmail Critical Vulnerability
What I finally did was to download the patched source RPM (sendmail-8.11.6-1.62.2.src.rpm), did an install ("rpm -i sendmail...etc"), then compiled it ("sh Build").Then Icopied each of the following files to a .bak backup in its subdirectory.
/usr/bin/rmail
/usr/sbin/mailstats
/usr/sbin/makemap
/usr/sbin/praliases
/usr/sbin/sendmail
/usr/sbin/smrsh
I then stopped the mail daemon using the web-based control screen.
I now had a backup copy of each of these files in its subdir ready to copy back into position should this upgrade fail. I then copied the new version of each of these new files into the appropriate subdirectory and restarted the mail daemon using the web-based controls.
The control page reported that sendmail had started and was running. I then went to an account outside this system and sent a test email which worked. Then I watched /var/log/maillog for a few minutes looking for obvious problems. None so far. :)
If you need to upgrade your SA1100 appliance server this method should work for you as well. I want to thank all who offered their suggestions.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-30-2003 05:02 AM
03-30-2003 05:02 AM
Re: Sendmail Critical Vulnerability
I have a SA1120 and various other 1U servers and plenty of disk space, that i would be fully prepared to make available if anyone wants to get involed in creating a new image.