VDB

DEBIAN-CVE-2003-0688

DEBIAN-CVE-2003-0688 PUBLISHED CVSS 8.699999809265137 HIGH

The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.

Risk Scores

CVSS 4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
Debian:11sendmail0, 0, 0
Debian:12sendmail0, 0, 0
Debian:14sendmail0, 0, 0
Debian:13sendmail0, 0, 0

Timeline

  • Oct 20, 2003 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›