[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [HTCondor-users] SECURITY: Addressing a problem in mailx



On Mon, Jan 12, 2015 at 02:16:19PM -0600, Zachary Miller wrote:
> 
> Hello,
> 
> You may have heard about a vulnerability in mailx.  This has the potential to
> affect HTCondor because the default mail agent used by HTCondor on many systems
> is mailx.
> 
>   https://bugzilla.redhat.com/show_bug.cgi?id=1169800
> 
> We suggest you update mailx to the latest version.  Alternatively, you can
> upgrade HTCondor to 8.2.6 (or 8.3.2) and configure HTCondor to use sendmail
> instead:
>   http://research.cs.wisc.edu/htcondor/manual/v8.2/3_3Configuration.html#18253

I should point out that when I sent this last month, I was mistaken that
upgrading mailx alone would fix this problem.  As of 8.2.7, released yesterday,
using sendmail is now the default, and I highly suggest you upgrade.

I apologize for any confusion.


Cheers,
-zach