CVE-2021-35525
published 2021-06-28CVE-2021-35525: PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sends certain long data fields such as multiple concatenated email addresses…
PriorityP426medium5.3CVSS 3.1
AVNACLPRNUINSUCNINAL
EPSS
1.62%
73.7th percentile
PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sends certain long data fields such as multiple concatenated email addresses. NOTE: the PostSRSd maintainer acknowledges "theoretically, this error should never occur ... I'm not sure if there's a reliable way to trigger this condition by an external attacker, but it is a security bug in PostSRSd nevertheless."
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | postsrsd | < postsrsd 1.10-2 (bookworm) | postsrsd 1.10-2 (bookworm) |
| ghost | sqlite3 | >= 0 < 3.22.0-1ubuntu0.6 | 3.22.0-1ubuntu0.6 |
| ghost | sqlite3 | >= 0 < 3.31.1-4ubuntu0.4 | 3.31.1-4ubuntu0.4 |
| postsrsd_project | postsrsd | < 1.11 | 1.11 |
| postsrsd_project | postsrsd | >= 0 < 1.10-2 | 1.10-2 |
| postsrsd_project | postsrsd | >= 0 < 1.10-2 | 1.10-2 |
| postsrsd_project | postsrsd | >= 0 < 1.10-2 | 1.10-2 |
| postsrsd_project | postsrsd | >= 0 < 1.10-2 | 1.10-2 |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv7.5HIGH
vendor_debian5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
sqlite3 vulnerabilities
osv·2022-09-15·CVSS 7.5
CVE-2020-35525 sqlite3 vulnerabilities
sqlite3 vulnerabilities
It was discovered that SQLite incorrectly handled INTERSEC query
processing. An attacker could use this issue to cause SQLite to crash,
resulting in a denial of service, or possibly execute arbitrary code.
(CVE-2020-35525)
It was discovered that SQLite incorrectly handled ALTER TABLE for views
that have a nested FROM clause. An attacker could use this issue to cause
SQLite to crash, resulting in a denial of service, or possibly execute
arbitrary code. This issue was only addressed in Ubuntu 20.04 LTS.
(CVE-2020-35527)
It was discovered that SQLite incorrectly handled embedded null characters
when tokenizing certain unicode strings. This issue could result in
incorrect results. This issue only affected Ubuntu 20.04 LTS.
(CVE-2021-20223)
GHSA
GHSA-w799-rf9r-4rqc: PostSRSd before 1
ghsa_unreviewed·2022-05-24
CVE-2021-35525 [MEDIUM] GHSA-w799-rf9r-4rqc: PostSRSd before 1
PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sends certain long data fields such as multiple concatenated email addresses. NOTE: the PostSRSd maintainer acknowledges "theoretically, this error should never occur ... I'm not sure if there's a reliable way to trigger this condition by an external attacker, but it is a security bug in PostSRSd nevertheless."
OSV
CVE-2021-35525: PostSRSd before 1
osv·2021-06-28·CVSS 5.3
CVE-2021-35525 [MEDIUM] CVE-2021-35525: PostSRSd before 1
PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sends certain long data fields such as multiple concatenated email addresses. NOTE: the PostSRSd maintainer acknowledges "theoretically, this error should never occur ... I'm not sure if there's a reliable way to trigger this condition by an external attacker, but it is a security bug in PostSRSd nevertheless."
Debian
CVE-2021-35525: postsrsd - PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sen...
vendor_debian·2021·CVSS 5.3
CVE-2021-35525 [MEDIUM] CVE-2021-35525: postsrsd - PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sen...
PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sends certain long data fields such as multiple concatenated email addresses. NOTE: the PostSRSd maintainer acknowledges "theoretically, this error should never occur ... I'm not sure if there's a reliable way to trigger this condition by an external attacker, but it is a security bug in PostSRSd nevertheless."
Scope: local
bookworm: resolved (fixed in 1.10-2)
bullseye: resolved (fixed in 1.10-2)
forky: resolved (fixed in 1.10-2)
sid: resolved (fixed in 1.10-2)
trixie: resolved (fixed in 1.10-2)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugs.gentoo.org/793674https://github.com/roehling/postsrsd/commit/077be98d8c8a9847e4ae0c7dc09e7474cbe27db2https://github.com/roehling/postsrsd/releases/tag/1.11https://security.gentoo.org/glsa/202107-08https://bugs.gentoo.org/793674https://github.com/roehling/postsrsd/commit/077be98d8c8a9847e4ae0c7dc09e7474cbe27db2https://github.com/roehling/postsrsd/releases/tag/1.11https://security.gentoo.org/glsa/202107-08
2021-06-28
Published