Debian: New sendmail packages fix denial of service

A programming error has been discovered in sendmail, an alternative mail transport agent for Debian, that could allow a remote attacker to crash the sendmail process by sending a specially crafted email message. Fixed packages are available from
Debian Security Advisory DSA 1164-1                                       Noah Meyerhans
August 31st, 2006             
Package        : sendmail
Vulnerability  : programming error
Problem-Type   : remote
Debian-specific: no
CVE ID         : CVE-2006-4434
BugTraq ID     : 19714
Debian Bug     : 385054

A programming error has been discovered in sendmail, an alternative
mail transport agent for Debian, that could allow a remote attacker to
crash the sendmail process by sending a specially crafted email

Please note that in order to install this update you also need
libsasl2 library from proposed updates as outlined in DSA 1155-2.

For the stable distribution (sarge) this problem has been fixed in
version 8.13.3-3sarge3

For the unstable distribution (sid) this problem has been fixed in
version 8.13.8-1

We recommend that you upgrade your sendmail package.

Upgrade Instructions
wget url
       will fetch the file for you
dpkg -i file.deb
       will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given at the end of this advisory:

apt-get update
       will update the internal database
apt-get upgrade
       will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.

Debian GNU/Linux 3.1 alias sarge
 These files will probably be moved into the stable distribution on
 its next update.

For apt-get: deb stable/updates main
For dpkg-ftp: dists/stable/updates/main
Mailing list:
Package info: `apt-cache show ' and

