CVE-2020-35679 log
| Source |
|
| Severity | High |
| Remote | Yes |
| Type | Information disclosure |
| Description | smtpd/table.c in OpenSMTPD before 6.8.0p1 lacks a certain regfree, which might allow attackers to trigger a "very significant" memory leak via messages to an instance that performs many regex lookups. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-1381 | opensmtpd | 6.7.1p1-6 | 6.8.0p2-1 | High | Fixed |
| Date | Advisory | Group | Package | Severity | Type |
|---|---|---|---|---|---|
| 12 Jan 2021 | ASA-202101-18 | AVG-1381 | opensmtpd | High | multiple issues |
| References |
|---|
https://github.com/openbsd/src/commit/79a034b4aed29e965f45a13409268290c9910043 |