CVE-2003-0681
A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.
- Affected products
- Sendmail
- Sendmail Advanced Message Server
- = 1.2, 1.3
- Sendmail
- = 2.6, 2.6.1, 2.6.2, 3.0, 3.0.1, 3.0.2, 3.0.3, 8.8.8, 8.9.0, 8.9.1, 8.9.2, 8.9.3, 8.10, 8.10.1, 8.10.2, 8.11.0, 8.11.1, 8.11.2, 8.11.3, 8.11.4, 8.11.5, 8.11.6, 8.12, 8.12.0, 8.12.1, 8.12.2, 8.12.3, 8.12.4, 8.12.5, 8.12.6, 8.12.7, 8.12.8, 8.12.9
- Sendmail Sendmail Pro
- = 8.9.2, 8.9.3
- Sendmail Sendmail Switch
- = 2.1, 2.1.1, 2.1.2
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 22.4% (98th percentile)
- NVD status
- Modified
- Published
- 2003-09-18
CVE-2003-0681 at NVD
2 known exploits for CVE-2003-0681
Proof-of-concept code and exploit modules indexed by Sploitus