Vulnerability Description
Sendmail before 8.12.1, without the RestrictQueueRun option enabled, allows local users to cause a denial of service (data loss) by (1) setting a high initial message hop count option (-h), which causes Sendmail to drop queue entries, (2) via the -qR option, or (3) via the -qS option.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sendmail | Sendmail | <= 8.12.1 |
References
- ftp://patches.sgi.com/support/free/security/advisories/20011101-01-I
- http://razor.bindview.com/publish/advisories/adv_sm812.htmlPatchVendor Advisory
- ftp://patches.sgi.com/support/free/security/advisories/20011101-01-I
- http://razor.bindview.com/publish/advisories/adv_sm812.htmlPatchVendor Advisory
FAQ
What is CVE-2001-0714?
CVE-2001-0714 is a vulnerability with a CVSS score of 2.1 (LOW). Sendmail before 8.12.1, without the RestrictQueueRun option enabled, allows local users to cause a denial of service (data loss) by (1) setting a high initial message hop count option (-h), which caus...
How severe is CVE-2001-0714?
CVE-2001-0714 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0714?
Check the references section above for vendor advisories and patch information. Affected products include: Sendmail Sendmail.