CVE
- Id
- 98
- CVE No.
- CVE-1999-0098
- Status
- Candidate
- Description
- Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities.
- Phase
- Proposed (19990726)
- Votes
- MODIFY(2) Baker, Frech | NOOP(1) Wall | REVIEWING(1) Christey
- Comments
- Frech> (Accept XF reference.) | Our references do not mention hiding activities. This issue can crash the | SMTP server or execute arbitrary byte-code. Is there another reference | available? | Christey> Should this be merged with CVE-1999-0284, which is Sendmail | with SMTP HELO? | Christey> BUGTRAQ:19980522 about sendmail 8.8.8 HELO hole | http://marc.theaimsgroup.com/?l=bugtraq&m=90221101925991&w=2 | BUGTRAQ:19980527 about sendmail 8.8.8 HELO hole | http://marc.theaimsgroup.com/?l=bugtraq&m=90221101926003&w=2 | Baker> Apparently this XF reference is not for this issue, but for the other issue. This should be modified to have the Bugtraq references, and remove the XF reference.