CVE-2006-0058
Sendmail 8.13.x < 8.13.6 - Remote Code Execution via Signal Handler Race Condition
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-0058. PoCs published by redsand.
AI-analyzed exploit summary This exploit targets a signal handling vulnerability in Sendmail 8.13.5 and below, leveraging a race condition to achieve remote code execution. It uses a multi-threaded approach to probe and exploit the target, with specific offsets and padding for Debian 3.0-r1.
Description
Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by triggering timeouts in a way that causes the setjmp and longjmp function calls to be interrupted and modify unexpected memory locations.
Exploits (1)
This exploit targets a signal handling vulnerability in Sendmail 8.13.5 and below, leveraging a race condition to achieve remote code execution. It uses a multi-threaded approach to probe and exploit the target, with specific offsets and padding for Debian 3.0-r1.