Описание
ascii_load_sockaddr in smtpd in OpenBSD before 7.1 errata 024 and 7.2 before errata 020, and OpenSMTPD Portable before 7.0.0-portable commit f748277, can abort upon a connection from a local, scoped IPv6 address.
Ссылки
- https://cvsweb.openbsd.org/cgi-bin/cvsweb/src/usr.sbin/smtpd/envelope.c.diff?r1=1.49&r2=1.49.4.1&f=hProduct
- https://cvsweb.openbsd.org/cgi-bin/cvsweb/src/usr.sbin/smtpd/envelope.c.diff?r1=1.50&r2=1.50.4.1&f=hProduct
- Product
- Patch
- Patch
- Patch
- Patch
- https://cvsweb.openbsd.org/cgi-bin/cvsweb/src/usr.sbin/smtpd/envelope.c.diff?r1=1.49&r2=1.49.4.1&f=hProduct
- https://cvsweb.openbsd.org/cgi-bin/cvsweb/src/usr.sbin/smtpd/envelope.c.diff?r1=1.50&r2=1.50.4.1&f=hProduct
- Product
- Patch
- Patch
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1Версия до 7.0.0 (исключая)
Одно из
cpe:2.3:a:opensmtpd:opensmtpd:*:*:*:*:*:*:*:*
cpe:2.3:o:openbsd:openbsd:7.1:*:*:*:*:*:*:*
cpe:2.3:o:openbsd:openbsd:7.2:*:*:*:*:*:*:*
EPSS
Процентиль: 12%
0.00042
Низкий
7.8 High
CVSS3
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.8
ubuntu
почти 3 года назад
ascii_load_sockaddr in smtpd in OpenBSD before 7.1 errata 024 and 7.2 before errata 020, and OpenSMTPD Portable before 7.0.0-portable commit f748277, can abort upon a connection from a local, scoped IPv6 address.
CVSS3: 7.8
debian
почти 3 года назад
ascii_load_sockaddr in smtpd in OpenBSD before 7.1 errata 024 and 7.2 ...
CVSS3: 7.8
github
почти 3 года назад
ascii_load_sockaddr in smtpd in OpenBSD before 7.1 errata 024 and 7.2 before errata 020, and OpenSMTPD Portable through 7.0.0-portable, can abort upon a connection from a local, scoped IPv6 address.
EPSS
Процентиль: 12%
0.00042
Низкий
7.8 High
CVSS3
Дефекты
NVD-CWE-noinfo