CVE
- Id
- 3523
- CVE No.
- CVE-2001-0715
- Status
- Candidate
- Description
- Sendmail before 8.12.1, without the RestrictQueueRun option enabled, allows local users to obtain potentially sensitive information about the mail queue by setting debugging flags to enable debug mode.
- Phase
- Modified (20050704)
- Votes
- ACCEPT(5) Armstrong, Baker, Cole, Foat, Wall | MODIFY(1) Frech | NOOP(1) Christey
- Comments
- Frech> XF:sendmail-debug-gain-information(7191) | Christey> ADDREF SGI:20011101-01-I | Christey> CIAC:M-020 | URL:http://ciac.llnl.gov/ciac/bulletins/m-020.shtml | HP:HPSBUX0201-179 | URL:http://www.securityfocus.com/advisories/3794 | BID:3898 | URL:http://www.securityfocus.com/bid/3898 | It *might* be that HP:HPSBUX0201-179 addresses this, but the | advisory is too vague to be certain. | URL:http://www.securityfocus.com/advisories/3794