Bugtraq mailing list archives

Re: Sendmail 8.8.x/8.9.x bugware


From: brozen () torah org (Brock Rozen)
Date: Mon, 18 Jan 1999 23:10:23 +0200


On Mon, 18 Jan 1999, Michal Zalewski wrote:

550 <rhialto () hacker some place else@victim.some.where>... Relaying denied

As you noticed, relaying is denied in your configuration ;P This attack is
possible if relaying is enabled, and it allows multiple redirections
trough protected or external networks, which shouldn't be allowed.

Is stuff like <nobody%example.com () victim some.where> allowed through?

--
Brock Rozen                                              brozen () torah org
Director of Technical Services                              (410)358-9800
Project Genesis                                     http://www.torah.org/



Current thread: