Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

SSMTP Mail Transfer Agent Symbolic Link Vulnerability

It has been reported that ssmtp is prone to a symbolic link vulnerability. This issue is due to a design error that causes the application to fail to validate files before writing to them.

This issue could be leveraged to corrupt arbitrary, attacker-specified system files. It may be possible for an attacker to gain escalated privileges on the affected system; it is certainly possible to cause a system wide denial of service condition.







 

Privacy Statement
Copyright 2009, SecurityFocus