← Back

CVE-2003-0688

nvd nist
Published: Oct 20, 2003Modified: Apr 16, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.

Affected (26)

Products: Redhat: Sendmail · Sendmail: Sendmail · Sgi: Irix · +3 more
Show all products
1 product
Sendmail
1 product
Sendmail
1 product
Irix
1 product
Tru64
1 product
Freebsd
1 product
Openbsd
Configuration A
19 vulnerable
Vulnerable SoftwareAffected Versions
Redhat
Version 8.12.5-7
Version 8.12.5-7
Version 8.12.5-7
Version 8.12.5-7
Version 8.12.8-4
Version 8.12.8-4
Version 8.12.8-4
Version 8.12.8-4
Sendmail
Version 8.12.1
Version 8.12.2
Version 8.12.3
Version 8.12.4
Version 8.12.5
Version 8.12.6
Version 8.12.7
Version 8.12.8
Sgi
Version 6.5.19
Version 6.5.20
Version 6.5.21
Configuration B
7 vulnerable
Vulnerable SoftwareAffected Versions
Compaq
Version 5.0a
Version 5.1
Freebsd
Version 4.6
Version 4.7
Version 4.8
Version 5.0
Version 3.2

References (16)

ftp://patches.sgi.com/support/free/security/advisories/20030803-01-P (unsafe URL)
Source: cve@mitre.org
Source: cve@mitre.org
US Government Resource
Source: cve@mitre.org
PatchVendor Advisory
ftp://patches.sgi.com/support/free/security/advisories/20030803-01-P (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.