cbcvebase.
CVE-2003-0681
published 2003-10-06

CVE-2003-0681: A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific…

PriorityP270high7.5CVSS 2.0
AVNACLAuNCPIPAP
ITWEXPLOITVulnCheck KEV
Exploited in the wild
EPSS
20.08%
97.2th percentile
A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.

Affected

101 ranges· showing 25
VendorProductVersion rangeFixed in
applemac_os_x
applemac_os_x
applemac_os_x
applemac_os_x
applemac_os_x
applemac_os_x
applemac_os_x
applemac_os_x_server
applemac_os_x_server
applemac_os_x_server
applemac_os_x_server
applemac_os_x_server
applemac_os_x_server
applemac_os_x_server
debiansendmail< sendmail 8.12.10-1 (bookworm)sendmail 8.12.10-1 (bookworm)
gentoolinux
gentoolinux
gentoolinux
gentoolinux
gentoolinux
hphp-ux
hphp-ux
hphp-ux
hphp-ux
ibmaix

Detection & IOCsextracted from sources · hover to see the quote

  • ·Vulnerability is limited to nonstandard ruleset configurations: 'recipient', 'final', or mailer-specific envelope recipient rulesets must be explicitly enabled for the flaw to be reachable.
  • ·Consequences of exploitation are officially listed as unknown; no confirmed exploit path or impact has been documented for this specific CVE.
  • ·The exploit code in Exploit-DB 23154 targets the prescan() function (a distinct vulnerability, BID 8641), NOT the ruleset parsing buffer overflow of CVE-2003-0681. Do not conflate the two.
  • ·Fixed in Sendmail 8.12.10-1 per Debian security tracker.

CVSS provenance

nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vulncheck7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.