VDB
DEBIAN-CVE-2003-0688
DEBIAN-CVE-2003-0688
PUBLISHED
CVSS 8.699999809265137 HIGH
The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data.
Risk Scores
CVSS 4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:11 | sendmail | 0, 0, 0 |
| Debian:12 | sendmail | 0, 0, 0 |
| Debian:14 | sendmail | 0, 0, 0 |
| Debian:13 | sendmail | 0, 0, 0 |
Timeline
- Oct 20, 2003 CVE Published
- Apr 28, 2026 CVE Updated