- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- Re: CERT Advisory CA-2003-12 Buffer Overflow in Se...
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-30-2003 06:50 PM
03-30-2003 06:50 PM
CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-30-2003 07:22 PM
03-30-2003 07:22 PM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
I received this same message yesterday, and I don't believe there is a patch available yet. Usually there is a notification from HP as soon as one is available.
Regards
Michael
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-30-2003 07:37 PM
03-30-2003 07:37 PM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-30-2003 08:13 PM
03-30-2003 08:13 PM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-30-2003 08:16 PM
03-30-2003 08:16 PM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
Those are OLD!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-31-2003 09:49 AM
03-31-2003 09:49 AM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
Looks like the researcher *only* notified sendmail.org 11 days before going public; (instead of the normal 30 days) this seems to me as if the impact of this vulnerability hadn't been throughly considered.
Then again; if HP actually packaged sendmail sensibly - and didn't tie it in with the whole of INET-SVCS then one could mitigate this by installing the new version of sendmail and not waiting for HP :-)
The easy solution is to disable sendmail on all HP boxen.
dave
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-31-2003 09:54 AM
03-31-2003 09:54 AM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
I do not believe there will be any other release until then.
Berlene
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-31-2003 10:55 AM
03-31-2003 10:55 AM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
Just curious.
dave
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-01-2003 06:06 AM
04-01-2003 06:06 AM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
That's one of the reason why i'm building these kind of tools from sources (I can also with this , control many other specific parameters, compile option, and build the cf file from sources which is easiest to configure......).
And sendmail is easy to build from sources.....
I updated my servers today, and it works fine .....
hth
Benoit
________
"Conna??tre une langue ??trang??re, c'est acc??der ?? une autre civilisation, une autre mani??re de penser, contribuer ?? la paix par la compr??hension et le dialogue; c'est aussi s'offrir des possibilit??s ??conomiques et de loisirs nouveaux." Joachim Charles Hitzke
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-01-2003 06:49 AM
04-01-2003 06:49 AM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
Yours truly,
John Morris
SOFTWARE SECURITY RESPONSE TEAM (SSRT)
Hewlett-Packard Company
HP Services
Join our (pre-merger) HP SECURITY BULLETIN MAILING LIST!
http://itrc.hp.com
In the left most frame select "Maintenance and Support"
Under the "Notifications" section (near the bottom of the page),
select "Support Information Digests".
JOIN OUR (pre-merger) COMPAQ CUSTOMER SECURITY BULLETIN MAILING LIST!
http://www.support.compaq.com/patches/mailing-list.shtml
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-01-2003 06:56 AM
04-01-2003 06:56 AM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
My Red Hat Linux Servers are already patches with normal package distribution for Red Hat. Still we have no word on sendmail 8.12.x and a binary installation procedure that concerns my management.
SEP
Owner of ISN Corporation
http://isnamerica.com
http://hpuxconsulting.com
Sponsor: http://hpux.ws
Twitter: http://twitter.com/hpuxlinux
Founder http://newdatacloud.com
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-01-2003 08:50 AM
04-01-2003 08:50 AM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
Berlene
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-01-2003 09:29 AM
04-01-2003 09:29 AM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-02-2003 12:35 AM
04-02-2003 12:35 AM
Re: CERT Advisory CA-2003-12 Buffer Overflow in Sendmail
While I was trying to install latest SAMBA (CISF/9000),found that the latest version available at HP web site is 2.2.5 where as others are already using 2.2.8.
Why HP is slow?
Now a days we can not compromise on security issue.
Can this SAMBA 2.2.5 address all latest vulnerabilities?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-07-2003 07:02 PM
04-07-2003 07:02 PM