CVE-1999-0565: Critical severity Sendmail Sendmail vulnerability
A Sendmail alias allows input to be piped to a program.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Remove or reconfigure any Sendmail aliases that pipe input to external programs so that mail is not delivered by piping to a program.
Sendmail aliases pipe to program = disabled
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0565?
CVE-1999-0565 has a severity rating of critical, with a score of 10.
What types of systems are affected by CVE-1999-0565?
CVE-1999-0565 affects systems using Sendmail, particularly those allowing input to be piped to a program.
How do I fix CVE-1999-0565?
To fix CVE-1999-0565, ensure that your Sendmail configuration is updated to prevent untrusted input from being piped to programs.
What are the potential consequences of CVE-1999-0565?
Exploitation of CVE-1999-0565 can lead to remote code execution and unauthorized access to sensitive data.
Is CVE-1999-0565 still relevant today?
Yes, CVE-1999-0565 is still relevant today due to the ongoing use of vulnerable versions of Sendmail in various systems.