SunOS sendmail 5.59 through 5.65 uses popen to process a forwarding host argument, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable and passing crafted values to the -oR option.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-04-21T04:00:00

Updated: 2024-08-01T17:18:07.526Z

Reserved: 2005-04-21T00:00:00

Link: CVE-1999-1580

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 1995-08-23T04:00:00.000

Modified: 2008-09-05T20:19:51.897

Link: CVE-1999-1580

cve-icon Redhat

No data.