CVE Vulnerabilities

CVE-2023-29323

Published: Apr 04, 2023 | Modified: Nov 04, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

ascii_load_sockaddr in smtpd in OpenBSD before 7.1 errata 024 and 7.2 before errata 020, and OpenSMTPD Portable before 7.0.0-portable commit f748277, can abort upon a connection from a local, scoped IPv6 address.

Affected Software

NameVendorStart VersionEnd Version
OpensmtpdOpensmtpd*7.0.0 (excluding)
OpenbsdOpenbsd7.1 (including)7.1 (including)
OpenbsdOpenbsd7.2 (including)7.2 (including)
OpensmtpdUbuntubionic*
OpensmtpdUbuntuesm-apps/bionic*
OpensmtpdUbuntuesm-apps/focal*
OpensmtpdUbuntuesm-apps/jammy*
OpensmtpdUbuntuesm-apps/xenial*
OpensmtpdUbuntuesm-infra-legacy/trusty*
OpensmtpdUbuntufocal*
OpensmtpdUbuntujammy*
OpensmtpdUbuntukinetic*
OpensmtpdUbuntulunar*
OpensmtpdUbuntumantic*
OpensmtpdUbuntuoracular*
OpensmtpdUbuntuplucky*
OpensmtpdUbuntutrusty*
OpensmtpdUbuntutrusty/esm*
OpensmtpdUbuntuxenial*

References