SA:03-04 note was a poor cut-n-paste from the SA. Do it right this

time.
This commit is contained in:
Bruce A. Mah 2003-03-03 18:23:57 +00:00
parent f5bc71ea34
commit 6b713ec7f2

View File

@ -133,10 +133,10 @@
given in security advisory <ulink
url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:03.syncookies.asc">FreeBSD-SA-03:03</ulink>.</para>
<para>Due to a buffer overflow in header parsing, a remote
attacker could create a specially crafted message that may cause
<application>sendmail</application> to execute arbitrary code
with the privileges of the user running sendmail, typically
<para>Due to a buffer overflow in header parsing in <application>sendmail</application>, a remote
attacker can create a specially-crafted message that may cause
&man.sendmail.8; to execute arbitrary code
with the privileges of the user running it, typically
<username>root</username>. More information, including pointers
to patches, can be found in security advisory <ulink
url="ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:04.sendmail.asc">FreeBSD-SA-03:04</ulink>.</para>