From 702da29d82f17ff864d63375c457beae4555e6ea Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Thu, 21 Dec 2023 18:15:32 +0100 Subject: Add reference for postfix details --- data/CVE/list | 1 + 1 file changed, 1 insertion(+) diff --git a/data/CVE/list b/data/CVE/list index 47ce865435..e411b9f86e 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -2,6 +2,7 @@ CVE-2023-XXXX [SMTP smuggling attack] - postfix (bug #1059230) NOTE: https://sec-consult.com/blog/detail/smtp-smuggling-spoofing-e-mails-worldwide/ NOTE: https://www.openwall.com/lists/oss-security/2023/12/21/6 + NOTE: postfix: https://www.postfix.org/smtp-smuggling.html NOTE: postfix: https://www.mail-archive.com/postfix-users@postfix.org/msg100901.html NOTE: postfix: Short-term Mitigation: smtpd_forbid_unauth_pipelining = yes TODO: track other major mailserver implementations -- cgit v1.2.3