CVE-1999-0047: Buffer Overflow
MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
sendmailfrom your environment.Uninstall or stop using sendmail versions 8.8.3 and 8.8.4. If these exact versions are in use, remove them from production hosts or replace them with a non-vulnerable release.
- Compensating control
If immediate removal or upgrade is not possible, restrict network exposure to the affected sendmail instance (e.g., block SMTP ports at the firewall, limit access to trusted hosts/networks) until a patched/non-vulnerable version is deployed.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0047?
CVE-1999-0047 is considered a critical vulnerability due to its potential to execute arbitrary code through buffer overflow.
How do I fix CVE-1999-0047?
To fix CVE-1999-0047, you should upgrade to a patched version of Sendmail that is not vulnerable to this exploit.
What versions of Sendmail are affected by CVE-1999-0047?
CVE-1999-0047 affects Sendmail versions 8.8.3 and 8.8.4.
Can CVE-1999-0047 be exploited remotely?
Yes, CVE-1999-0047 can be exploited remotely if an attacker sends specially crafted email messages.
What could be the impact of exploiting CVE-1999-0047?
Exploiting CVE-1999-0047 could lead to unauthorized access, denial of service, or system compromise.