Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2003-0688

Опубликовано: 20 окт. 2003
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:redhat:sendmail:8.12.5-7:*:i386:*:*:*:*:*
cpe:2.3:a:redhat:sendmail:8.12.5-7:*:i386_cf:*:*:*:*:*
cpe:2.3:a:redhat:sendmail:8.12.5-7:*:i386_dev:*:*:*:*:*
cpe:2.3:a:redhat:sendmail:8.12.5-7:*:i386_doc:*:*:*:*:*
cpe:2.3:a:redhat:sendmail:8.12.8-4:*:i386:*:*:*:*:*
cpe:2.3:a:redhat:sendmail:8.12.8-4:*:i386_cf:*:*:*:*:*
cpe:2.3:a:redhat:sendmail:8.12.8-4:*:i386_dev:*:*:*:*:*
cpe:2.3:a:redhat:sendmail:8.12.8-4:*:i386_doc:*:*:*:*:*
cpe:2.3:a:sendmail:sendmail:8.12.1:*:*:*:*:*:*:*
cpe:2.3:a:sendmail:sendmail:8.12.2:*:*:*:*:*:*:*
cpe:2.3:a:sendmail:sendmail:8.12.3:*:*:*:*:*:*:*
cpe:2.3:a:sendmail:sendmail:8.12.4:*:*:*:*:*:*:*
cpe:2.3:a:sendmail:sendmail:8.12.5:*:*:*:*:*:*:*
cpe:2.3:a:sendmail:sendmail:8.12.6:*:*:*:*:*:*:*
cpe:2.3:a:sendmail:sendmail:8.12.7:*:*:*:*:*:*:*
cpe:2.3:a:sendmail:sendmail:8.12.8:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.19:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.20:*:*:*:*:*:*:*
cpe:2.3:o:sgi:irix:6.5.21:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:o:compaq:tru64:5.0a:*:*:*:*:*:*:*
cpe:2.3:o:compaq:tru64:5.1:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:4.6:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:4.7:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:4.8:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*
cpe:2.3:o:openbsd:openbsd:3.2:*:*:*:*:*:*:*

EPSS

Процентиль: 87%
0.03338
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

redhat
почти 23 года назад

The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.

debian
почти 23 года назад

The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdn ...

github
около 4 лет назад

The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.

fstec
почти 23 года назад

Уязвимость операционной системы openSUSE, позволяющая злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 87%
0.03338
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other