VYPR

rpm package

suse/sendmail&distro=SUSE Linux Enterprise Module for Legacy 12

pkg:rpm/suse/sendmail&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Legacy%2012

Vulnerabilities (2)

  • CVE-2023-51765Dec 24, 2023
    affected < 8.14.9-4.9.1fixed 8.14.9-4.9.1

    sendmail through 8.17.2 allows SMTP smuggling in certain configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because sendmail supports <

  • CVE-2022-31256Oct 26, 2022
    affected < 8.14.9-4.6.1fixed 8.14.9-4.6.1

    A Improper Link Resolution Before File Access ('Link Following') vulnerability in a script called by the sendmail systemd service of openSUSE Factory allows local attackers to escalate from user mail to root. This issue affects: SUSE openSUSE Factory sendmail versions prior to 8.