← All CVEs

CVE-2020-8794

critical · 9.8

OpenSMTPD before 6.6.4 allows remote code execution because of an out-of-bounds read in mta_io in mta_session.c for multi-line replies. Although this vulnerability affects the client side of OpenSMTPD, it is possible to attack a server because the server code launches the client code during bounce handling.

9.8
CVSS
88.9%
EPSS (exploit prob.)
100th
EPSS percentile
2020-02-25
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-125

Affected products

VendorProductAffected versions
opensmtpdopensmtpd< 6.6.4
canonicalubuntu_linux18.04
canonicalubuntu_linux19.10
fedoraprojectfedora31
fedoraprojectfedora32
debiandebian_linux9.0
debiandebian_linux10.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2020-8794