Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-43964

Опубликовано: 04 мая 2026
Источник: debian

Описание

Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
postfixfixed3.11.2-1package
postfixfixed3.10.10-0+deb13u1trixiepackage
postfixno-dsabookwormpackage
postfixpostponedbullseyepackage

Примечания

  • https://www.mail-archive.com/postfix-announce@postfix.org/msg00110.html

  • https://www.openwall.com/lists/oss-security/2026/05/04/25

Связанные уязвимости

CVSS3: 3.7
ubuntu
3 месяца назад

Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number.

CVSS3: 7.5
redhat
3 месяца назад

Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number.

CVSS3: 3.7
nvd
3 месяца назад

Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number.

CVSS3: 3.7
msrc
3 месяца назад

Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced status code that lacks text after the third number.

suse-cvrf
около 1 месяца назад

Security update for postfix

Уязвимость CVE-2026-43964