OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Vuln-Dev Archives: Re: procmail / Sendmail - five bugs

Re: procmail / Sendmail - five bugs


Subject: Re: procmail / Sendmail - five bugs
From: CyberPsychotic (fygraveEPR0.ORG)
Date: Fri Jan 14 2000 - 21:17:16 CST


~ : O MaxDaemonChildren=15 will avoid system crash and host rebooting but
~ : not sendmail DoS, because sendmail will not accept any connection
~ : until "frozen" child processes will be killed. The best way to avoid
~ : this vulnerability is to switch off ETRN feature by
~ : O PrivacyOptions=noetrn

 or rather:

O PrivacyOptions=goaway

to be more hostile towards doorknockers.

-F



This archive was generated by hypermail 2b27 : Fri Jan 14 2000 - 11:26:59 CST