From 91d7cbe48c065a0256a462e80cd860a040291307 Mon Sep 17 00:00:00 2001 From: Jacques Vidrine Date: Tue, 19 Oct 2004 16:40:34 +0000 Subject: Document a vulnerability in ifmail. (There does not exist an appropriate public reference yet--- this entry should be updated when the port is updated.) Reported by: Niels Heinen --- security/vuxml/vuln.xml | 25 +++++++++++++++++++++++++ 1 file changed, 25 insertions(+) diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 83717c37cd30..97c1ae9d1e2b 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -32,6 +32,31 @@ EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. --> + + ifmail -- unsafe set-user-ID application + + + ifmail + ifmail-2.15_4 + + + + +

Niels Heinen reports that ifmail allows one to specify + a configuration file. Since ifmail runs set-user-ID `news', + this may allow a local attacker to write to arbitrary files + or execute arbitrary commands as the `news' user.

+ +
+ + http://cvsweb.freebsd.org/ports/news/ifmail + + + 2004-08-23 + 2004-10-19 + +
+ imwheel -- insecure handling of PID file -- cgit v1.2.3