5

CVE-2003-0688

The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
RedhatSendmail Version8.12.5-7 Editioni386
RedhatSendmail Version8.12.5-7 Editioni386_cf
RedhatSendmail Version8.12.5-7 Editioni386_dev
RedhatSendmail Version8.12.5-7 Editioni386_doc
RedhatSendmail Version8.12.8-4 Editioni386
RedhatSendmail Version8.12.8-4 Editioni386_cf
RedhatSendmail Version8.12.8-4 Editioni386_dev
RedhatSendmail Version8.12.8-4 Editioni386_doc
SendmailSendmail Version8.12.1
SendmailSendmail Version8.12.2
SendmailSendmail Version8.12.3
SendmailSendmail Version8.12.4
SendmailSendmail Version8.12.5
SendmailSendmail Version8.12.6
SendmailSendmail Version8.12.7
SendmailSendmail Version8.12.8
SgiIrix Version6.5.19
SgiIrix Version6.5.20
SgiIrix Version6.5.21
CompaqTru64 Version5.0a
CompaqTru64 Version5.1
FreebsdFreebsd Version4.6
FreebsdFreebsd Version4.7
FreebsdFreebsd Version4.8
FreebsdFreebsd Version5.0
OpenbsdOpenbsd Version3.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.71% 0.815
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P