Security Basics mailing list archives

Qmail passing sendmail vulnerability downstream


From: Tim Thornton <tthornton () hotmail com>
Date: 10 Mar 2003 19:12:04 -0000



  I understand that Qmail is not vulnerable to the
recent Sendmail issue, but I want to know if Qmail will
still forward the sendmail vulnerability "modified
oversized header" downstream to other MTA's, thus
leaving downstream sendmail servers open to the
vulnerability.


Current thread: