Security problem in sendmail versions 8.x.x

This showed up in my mailbox last night. Anyone know any details?


Security problem in sendmail versions 8.x.x
If you are running sendmail 8.x.x, you should take note of the
following posting, and get version 8.6.7 ASAP.
NeXT's sendmail version 5.67e doesn't have the bug, and is the
version you should be using if you are sticking with NeXT's.

To find what version of sendmail a host is running, do:
"telnet hostname 25", then type 'quit'.

sendmail 8.6.7 released
>I regret that someone reported a nasty security problem to me less
>that 24 hours after I released sendmail 8.6.6.  This bug is present
>in all sendmail version 8 versions prior to 8.6.7, as well as in
>many vendor versions.  It does not exist in IDA sendmail.  I urge
>you to upgrade before the cracker scripts start circulating around
>the network.  Sorry for the inconvenience -- I only heard about this
>an hour ago myself.
>Sendmail 8.6.7 is available on FTP.CS.Berkeley.EDU in /ucb/sendmail.

