Когда-нибудь это должно было случиться. Когда я еще занимался
обслуживанием Unix-систем, было две надежно работающих дырки в системе
- sendmail и wuftpd, которые нужно было удалять немедленно после
инсталляции. С WU-шником раздуплились раньше. RIP.
On Jan 31, 2008 12:30 PM, Igor A. Karpov
Why did you remove sendmail?
Christos Zoulas: Sendmail has been, is, and will be a security accident waiting to happen (unless it is rewritten from the ground up with security consciousness). Performing character pointer gymnastics in 50-100 line loops does not create any warm and fuzzy feelings for me. To top this off, most sendmail security issues are marked as confidential, and we are prevented from fixing or mentioning the problem until the ban is lifted. The last time this happened, we said "enough" and removed it altogether before the ban for that particular security issue was lifted. =================================================================== uanog mailing list. To Unsubscribe: send mail to majordomo@uanog.kiev.ua with "unsubscribe uanog" in the body of the message
-- /doka =================================================================== uanog mailing list. To Unsubscribe: send mail to majordomo@uanog.kiev.ua with "unsubscribe uanog" in the body of the message