Postsrsd Project Postsrsd vulnerabilities
2 known vulnerabilities affecting postsrsd_project/postsrsd.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2021-35525MEDIUMCVSS 5.3fixed in 1.112021-06-28
CVE-2021-35525 [MEDIUM] CVE-2021-35525: PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sends certain long data
PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sends certain long data fields such as multiple concatenated email addresses. NOTE: the PostSRSd maintainer acknowledges "theoretically, this error should never occur ... I'm not sure if there's a reliable way to trigger this condition by an external attacker, but it is a security
nvdosv
CVE-2020-35573HIGHCVSS 7.5fixed in 1.102020-12-20
CVE-2020-35573 [HIGH] CWE-834 CVE-2020-35573: srs2.c in PostSRSd before 1.10 allows remote attackers to cause a denial of service (CPU consumption
srs2.c in PostSRSd before 1.10 allows remote attackers to cause a denial of service (CPU consumption) via a long timestamp tag in an SRS address.
nvdosv