cbcvebase.
CVE-2006-0058
published 2006-03-22

CVE-2006-0058: Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by triggering timeouts in a way that causes…

high7.6CVSS 3.1
AVNACHAuNCCICAC
EXPLOIT
Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by triggering timeouts in a way that causes the setjmp and longjmp function calls to be interrupted and modify unexpected memory locations.

Affected

11 ranges
VendorProductVersion rangeFixed in
debiansendmail< sendmail 8.13.6-1 (bookworm)sendmail 8.13.6-1 (bookworm)
sendmailsendmail
sendmailsendmail
sendmailsendmail
sendmailsendmail
sendmailsendmail
sendmailsendmail
sendmailsendmail>= 0 < 8.13.6-18.13.6-1
sendmailsendmail>= 0 < 8.13.6-18.13.6-1
sendmailsendmail>= 0 < 8.13.6-18.13.6-1
sendmailsendmail>= 0 < 8.13.6-18.13.6-1

CVSS provenance

nvd7.6HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
osv7.6HIGH