[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-security] *ALERT* UPDATED BID 3163 (URGENCY 6.58): Sendmail Debugger Arbitrary Code Execution Vulnerability (fwd)



> How do you determine which version you have 
> of any program? I can't seem to
> find Help > About

God I hate these long-ass subject lines... but
anyway...

Since most of the services installed on these boxes is
via RPM's, just issue:

rpm -qa

and you'll get a list of what's installed and usually
with the version info... Most RaQ4's (with all the
patches installed) have sendmail version 8.10.2-C1. If
it's a RaQ3 with all the goodies, it'll prob have
sendmail version 8.9.3-C6 as you'll see in the RPM
query. I'm not sure about the other models.. 

But if you choose to use the command:

/usr/sbin/sendmail -d0.1

to check your version, you should know you have to hit
<Ctrl> + c to escape from this mode afterwards.

Scott

__________________________________________________
Do You Yahoo!?
Make international calls for as low as $.04/minute with Yahoo! Messenger
http://phonecard.yahoo.com/