CVE Vulnerabilities

CVE-2023-29323

Published: Apr 04, 2023 | Modified: Apr 19, 2024
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

ascii_load_sockaddr in smtpd in OpenBSD before 7.1 errata 024 and 7.2 before errata 020, and OpenSMTPD Portable before 7.0.0-portable commit f748277, can abort upon a connection from a local, scoped IPv6 address.

Affected Software

Name Vendor Start Version End Version
Opensmtpd Opensmtpd * 7.0.0 (excluding)
Openbsd Openbsd 7.1 (including) 7.1 (including)
Openbsd Openbsd 7.2 (including) 7.2 (including)
Opensmtpd Ubuntu bionic *
Opensmtpd Ubuntu esm-apps/bionic *
Opensmtpd Ubuntu esm-apps/focal *
Opensmtpd Ubuntu esm-apps/jammy *
Opensmtpd Ubuntu esm-apps/xenial *
Opensmtpd Ubuntu esm-infra-legacy/trusty *
Opensmtpd Ubuntu focal *
Opensmtpd Ubuntu jammy *
Opensmtpd Ubuntu kinetic *
Opensmtpd Ubuntu lunar *
Opensmtpd Ubuntu mantic *
Opensmtpd Ubuntu trusty *
Opensmtpd Ubuntu trusty/esm *
Opensmtpd Ubuntu xenial *

References