summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2023-12-21 17:52:03 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2023-12-21 17:52:03 +0100
commitcf3a53e23ed0e4f398fd5cd36ffe3dfff24427f0 (patch)
treec463133b4c1936fe814c2ba4f9415bc4156c8eef
parent2f9b1d76b49ce0061f6cf9c567a0757192565fdf (diff)
Add temporary entry for SMTP smuggling attack issue
-rw-r--r--data/CVE/list6
1 files changed, 6 insertions, 0 deletions
diff --git a/data/CVE/list b/data/CVE/list
index 9fc855aec0..53e8e571ab 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1,3 +1,9 @@
+CVE-2023-XXXX [SMTP smuggling attack]
+ - postfix <unfixed>
+ NOTE: https://sec-consult.com/blog/detail/smtp-smuggling-spoofing-e-mails-worldwide/
+ NOTE: https://www.openwall.com/lists/oss-security/2023/12/21/6
+ NOTE: postfix: https://www.mail-archive.com/postfix-users@postfix.org/msg100901.html
+ NOTE: postfix: Short-term Mitigation: smtpd_forbid_unauth_pipelining = yes
CVE-2023-48291
- airflow <itp> (bug #819700)
CVE-2023-47265

© 2014-2024 Faster IT GmbH | imprint | privacy policy