William Westfield (BILLW@MATHOM.CISCO.COM)
Sun 6 Nov 88 17:44:47-PST
This has been the second major trojan horse in sendmail.
I think the people working on the code should put a lot more
thought into including code that can cause such serious security
holes EVER, in addition to trying to make sure that test code is
not propagated into "production" environments.
It isn't obvious to me that being able to send mail to commands
is particurally useful even in a debugging environment.
This archive was generated by hypermail 2.0b3 on Thu Mar 09 2000 - 14:44:29 GMT