vulnerability

FreeBSD: VID-6d9eadaf-6007-11e6-a6c3-14dae9d210b8: FreeBSD -- sendmail improper close-on-exec flag handling

Severity
5
CVSS
(AV:L/AC:L/Au:N/C:C/I:N/A:N)
Published
Aug 11, 2016
Added
Aug 12, 2016
Modified
Dec 10, 2025

Description

Problem Description: There is a programming error in sendmail(8) that prevented open file descriptors have close-on-exec properly set. Consequently a subprocess will be able to access all open files that the parent process have open. Impact: A local user who can execute their own program for mail delivery will be able to interfere with an open SMTP connection.

Solutions

freebsd-upgrade-base-10_0-release-p4freebsd-upgrade-base-9_2-release-p7freebsd-upgrade-base-9_1-release-p14freebsd-upgrade-base-8_4-release-p11

References

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.