018: SECURITY FIX: November 6, 2002 Incorrect argument checking in the getrlimit(2) system call may allow an attacker to crash the kernel. A source code patch exists which remedies the problem.
017: SECURITY FIX: November 6, 2002 An attacker can bypass the restrictions imposed by sendmail's restricted shell, smrsh(8), and execute arbitrary commands with the privileges of his own account. A source code patch exists which remedies the problem.