OpenDMARC 1.4.1 and 1.4.1.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a multi-value From header field.
The product dereferences a pointer that it expects to be valid but is NULL.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Opendmarc | Trusteddomain | 1.4.1 (including) | 1.4.1 (including) | 
| Opendmarc | Trusteddomain | 1.4.1.1 (including) | 1.4.1.1 (including) | 
| Opendmarc | Ubuntu | bionic | * | 
| Opendmarc | Ubuntu | groovy | * | 
| Opendmarc | Ubuntu | hirsute | * | 
| Opendmarc | Ubuntu | impish | * | 
| Opendmarc | Ubuntu | kinetic | * | 
| Opendmarc | Ubuntu | trusty | * | 
| Opendmarc | Ubuntu | xenial | * |