Executive Summary

Informations
NameCVE-2003-0161First vendor Publication2003-04-02
VendorCveLast vendor Modification2018-10-30

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C)
Cvss Base Score10Attack RangeNetwork
Cvss Impact Score10Attack ComplexityLow
Cvss Expoit Score10AuthenticationNone Required
Calculate full CVSS 2.0 Vectors scores

Security Protection

ImpactsProvides administrator access : Allows complete confidentiality, integrity, and availability violation; Allows unauthorized disclosure of information; Allows disruption of service.

Detail

The prescan() function in the address parser (parseaddr.c) in Sendmail before 8.12.9 does not properly handle certain conversions from char and int types, which can cause a length check to be disabled when Sendmail misinterprets an input value as a special "NOCHAR" control value, allowing attackers to cause a denial of service and possibly execute arbitrary code via a buffer overflow attack using messages, a different vulnerability than CVE-2002-1337.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0161

CWE : Common Weakness Enumeration

%idName

CPE : Common Platform Enumeration

TypeDescriptionCount
Application35
Application16
Os25
Os16
Os1
Os1
Os1
Os9
Os7

OpenVAS Exploits

DateDescription
2008-01-17Name : Debian Security Advisory DSA 278-1 (sendmail)
File : nvt/deb_278_1.nasl
2008-01-17Name : Debian Security Advisory DSA 278-2 (sendmail)
File : nvt/deb_278_2.nasl
2008-01-17Name : Debian Security Advisory DSA 290-1 (sendmail-wide)
File : nvt/deb_290_1.nasl

Open Source Vulnerability Database (OSVDB)

idDescription
8294Sendmail NOCHAR Control Value prescan Overflow

Snort® IPS/IDS

DateDescription
2014-01-10Sendmail RCPT TO prescan too long addresses overflow
RuleID : 2270-community - Revision : 18 - Type : SERVER-MAIL
2014-01-10Sendmail RCPT TO prescan too long addresses overflow
RuleID : 2270 - Revision : 18 - Type : SERVER-MAIL
2014-01-10Sendmail MAIL FROM prescan too long addresses overflow
RuleID : 2268-community - Revision : 16 - Type : SERVER-MAIL
2014-01-10Sendmail MAIL FROM prescan too long addresses overflow
RuleID : 2268 - Revision : 16 - Type : SERVER-MAIL
2014-01-10Sendmail SOML FROM prescan too long addresses overflow
RuleID : 2266-community - Revision : 16 - Type : SERVER-MAIL
2014-01-10Sendmail SOML FROM prescan too long addresses overflow
RuleID : 2266 - Revision : 16 - Type : SERVER-MAIL
2014-01-10Sendmail SAML FROM prescan too long addresses overflow
RuleID : 2264-community - Revision : 16 - Type : SERVER-MAIL
2014-01-10Sendmail SAML FROM prescan too long addresses overflow
RuleID : 2264 - Revision : 16 - Type : SERVER-MAIL
2014-01-10Sendmail SEND FROM prescan too long addresses overflow
RuleID : 2262-community - Revision : 16 - Type : SERVER-MAIL
2014-01-10Sendmail SEND FROM prescan too long addresses overflow
RuleID : 2262 - Revision : 16 - Type : SERVER-MAIL
2014-01-10VRFY overflow attempt
RuleID : 2260-community - Revision : 17 - Type : SERVER-MAIL
2014-01-10VRFY overflow attempt
RuleID : 2260 - Revision : 17 - Type : SERVER-MAIL
2014-01-10EXPN overflow attempt
RuleID : 2259-community - Revision : 17 - Type : SERVER-MAIL
2014-01-10EXPN overflow attempt
RuleID : 2259 - Revision : 17 - Type : SERVER-MAIL
2014-01-10Sendmail Content-Transfer-Encoding overflow attempt
RuleID : 2183-community - Revision : 16 - Type : SERVER-MAIL
2014-01-10Sendmail Content-Transfer-Encoding overflow attempt
RuleID : 2183 - Revision : 16 - Type : SERVER-MAIL

Nessus® Vulnerability Scanner

DateDescription
2007-09-25Name : The remote HP-UX host is missing a security-related patch.
File : hpux_PHNE_35483.nasl - Type : ACT_GATHER_INFO
2007-09-25Name : The remote HP-UX host is missing a security-related patch.
File : hpux_PHNE_35484.nasl - Type : ACT_GATHER_INFO
2005-02-16Name : The remote HP-UX host is missing a security-related patch.
File : hpux_PHNE_28409.nasl - Type : ACT_GATHER_INFO
2005-02-16Name : The remote HP-UX host is missing a security-related patch.
File : hpux_PHNE_29526.nasl - Type : ACT_GATHER_INFO
2004-09-29Name : The remote Debian host is missing a security-related update.
File : debian_DSA-290.nasl - Type : ACT_GATHER_INFO
2004-09-29Name : The remote Debian host is missing a security-related update.
File : debian_DSA-278.nasl - Type : ACT_GATHER_INFO
2004-07-31Name : The remote Mandrake Linux host is missing one or more security updates.
File : mandrake_MDKSA-2003-042.nasl - Type : ACT_GATHER_INFO
2004-07-06Name : The remote Red Hat host is missing one or more security updates.
File : redhat-RHSA-2003-121.nasl - Type : ACT_GATHER_INFO
2003-03-29Name : Arbitrary code may be run on the remote server
File : sendmail_conversion_overflow.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

SourceUrl
BID http://www.securityfocus.com/bid/7230
BUGTRAQ http://marc.info/?l=bugtraq&m=104896621106790&w=2
http://marc.info/?l=bugtraq&m=104897487512238&w=2
http://marc.info/?l=bugtraq&m=104914999806315&w=2
http://www.securityfocus.com/archive/1/316961/30/25250/threaded
http://www.securityfocus.com/archive/1/317135/30/25220/threaded
http://www.securityfocus.com/archive/1/321997
CALDERA ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2003-016.0.txt
CERT http://www.cert.org/advisories/CA-2003-12.html
CERT-VN http://www.kb.cert.org/vuls/id/897604
CONECTIVA http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000614
CONFIRM http://lists.apple.com/mhonarc/security-announce/msg00028.html
DEBIAN http://www.debian.org/security/2003/dsa-278
http://www.debian.org/security/2003/dsa-290
FREEBSD ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:07.sendmail.asc
FULLDISC http://lists.grok.org.uk/pipermail/full-disclosure/2003-March/004295.html
GENTOO http://www.gentoo.org/security/en/glsa/glsa-200303-27.xml
REDHAT http://www.redhat.com/support/errata/RHSA-2003-120.html
http://www.redhat.com/support/errata/RHSA-2003-121.html
SCO ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2004.11/SCOSA-2004.11.txt
SGI ftp://patches.sgi.com/support/free/security/advisories/20030401-01-P
SUNALERT http://sunsolve.sun.com/search/document.do?assetkey=1-26-52620-1
http://sunsolve.sun.com/search/document.do?assetkey=1-26-52700-1
http://sunsolve.sun.com/search/document.do?assetkey=1-77-1001088.1-1

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
DateInformations
2018-10-31 00:19:42
  • Multiple Updates
2018-10-19 21:19:35
  • Multiple Updates
2016-10-18 12:01:09
  • Multiple Updates
2016-06-28 15:01:54
  • Multiple Updates
2016-04-26 12:30:49
  • Multiple Updates
2014-02-17 10:25:55
  • Multiple Updates
2014-01-19 21:21:54
  • Multiple Updates
2013-05-11 11:50:47
  • Multiple Updates