summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2023-12-21 18:15:32 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2023-12-21 18:15:32 +0100
commit702da29d82f17ff864d63375c457beae4555e6ea (patch)
tree5702d23810d796642176573893996d4935cd8202
parentaca81b00b84de3ad91510f9377848ab81980d782 (diff)
Add reference for postfix details
-rw-r--r--data/CVE/list1
1 files changed, 1 insertions, 0 deletions
diff --git a/data/CVE/list b/data/CVE/list
index 47ce865435..e411b9f86e 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -2,6 +2,7 @@ CVE-2023-XXXX [SMTP smuggling attack]
- postfix <unfixed> (bug #1059230)
NOTE: https://sec-consult.com/blog/detail/smtp-smuggling-spoofing-e-mails-worldwide/
NOTE: https://www.openwall.com/lists/oss-security/2023/12/21/6
+ NOTE: postfix: https://www.postfix.org/smtp-smuggling.html
NOTE: postfix: https://www.mail-archive.com/postfix-users@postfix.org/msg100901.html
NOTE: postfix: Short-term Mitigation: smtpd_forbid_unauth_pipelining = yes
TODO: track other major mailserver implementations

© 2014-2024 Faster IT GmbH | imprint | privacy policy