ssmtp is prone to a local security vulnerability. The log_event function in ssmtp 2.50.6 and earlier allows local users to overwrite arbitrary files through a symlink attack on the ssmtp.log temporary log file.
ssmtp is prone to a local security vulnerability. The log_event function in ssmtp 2.50.6 and earlier allows local users to overwrite arbitrary files through a symlink attack on the ssmtp.log temporary log file.