Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2020-8794
Description:OpenSMTPD before 6.6.4 allows remote code execution because of an out- of-bounds read in mta_io in mta_session.c for multi-line replies. Although this vulnerability affects the client side of OpenSMTPD, it is possible to attack a server because the server code launches the client code during bounce handling.
Test IDs: 1.3.6.1.4.1.25623.1.0.704634  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2020-8794
Debian Security Information: DSA-4634 (Google Search)
https://www.debian.org/security/2020/dsa-4634
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OPH4QU4DNVHA7ACFXMYFCEP5PSXXPN4E/
http://seclists.org/fulldisclosure/2020/Feb/32
http://packetstormsecurity.com/files/156633/OpenSMTPD-Out-Of-Bounds-Read-Local-Privilege-Escalation.html
https://www.openbsd.org/security.html
https://www.openwall.com/lists/oss-security/2020/02/24/5
http://www.openwall.com/lists/oss-security/2020/02/26/1
http://www.openwall.com/lists/oss-security/2020/03/01/1
http://www.openwall.com/lists/oss-security/2020/03/01/2
http://www.openwall.com/lists/oss-security/2021/05/04/7
https://usn.ubuntu.com/4294-1/




© 1998-2025 E-Soft Inc. All rights reserved.