sendmail: incorrect verification of SSL certificate with NUL in name
Published Jan 4, 2010
7.5
HIGHCVSS 2.0
EPSS 2.40%
Description
sendmail before 8.14.4 does not properly handle a '\0' character in a Common Name (CN) field of an X.509 certificate, which (1) allows man-in-the-middle attackers to spoof arbitrary SSL-based SMTP servers via a crafted server certificate issued by a legitimate Certification Authority, and (2) allows remote attackers to bypass intended access restrictions via a crafted client certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.
Affected products
No data.
- ≤ 8.14.3
- 2.6
- 2.6.1
- 3.0
- 3.0.1
- 4.1
- 4.55
- 5
- 5.59
- 5.61
- 5.65
- 8.6.7
- 8.7.6
- 8.7.7
- 8.7.8
- 8.7.9
- 8.7.10
- 8.8.8
- 8.9.0
- 8.9.1
- 8.9.2
- 8.9.3
- 8.10
- 8.10.0
- 8.10.1
- 8.10.2
- 8.11.0
- 8.11.1
- 8.11.2
- 8.11.3
- 8.11.4
- 8.11.5
- 8.11.6
- 8.11.7
- 8.12
- 8.12
- 8.12
- 8.12
- 8.12
- 8.12.0
- 8.12.1
- 8.12.2
- 8.12.3
- 8.12.4
- 8.12.5
- 8.12.6
- 8.12.7
- 8.12.8
- 8.12.9
- 8.12.10
- 8.13.0
- 8.13.1
- 8.13.1.2
- 8.13.2
- 8.13.3
- 8.13.4
- 8.13.5
- 8.13.6
- 8.13.7
- 8.13.8
- 8.14.1
- 8.14.2
No data.
Red Hat Enterprise Linux 4
sendmail-0:8.13.1-6.el4
Fixed · RHSA-2011:0262
Red Hat Enterprise Linux 5
sendmail-0:8.13.8-8.el5
Fixed · RHSA-2010:0237
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 4 | sendmail-0:8.13.1-6.el4 | Fixed | RHSA-2011:0262 |
| Red Hat Enterprise Linux 5 | sendmail-0:8.13.8-8.el5 | Fixed | RHSA-2010:0237 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:L/Au:N/C:P/I:P/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (11 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 2.40% (0.02395) | 83.38th | v5 (v2026.06.15) |
| Jun 15, 2026 | 2.37% (0.02374) | 81.60th | v5 (v2026.06.15) |
| Jul 30, 2025 | 0.79% (0.00789) | 72.92th | v4 (v2025.03.14) |
| Mar 29, 2025 | 1.98% (0.01979) | 72.70th | v4 (v2025.03.14) |
| Mar 17, 2025 | 0.59% (0.00594) | 67.41th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.54% (0.00541) | 78.06th | v3 (v2023.03.01) |
| Feb 8, 2024 | 0.54% (0.00541) | 76.61th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.54% (0.00541) | 73.79th | v3 (v2023.03.01) |
| Mar 6, 2023 | 4.36% (0.04358) | 88.02th | v2 (v2022.01.01) |
| Apr 1, 2022 | 4.36% (0.04358) | 86.83th | v2 (v2022.01.01) |
| Feb 4, 2022 | 4.36% (0.04358) | 70.59th | v2 (v2022.01.01) |
References (24)
- http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html vendor-advisoryx_refsource_SUSE
- http://marc.info/?l=bugtraq&m=126953289726317&w=2 vendor-advisoryx_refsource_HP
- http://secunia.com/advisories/37998 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/38314 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/38915 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/39088 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/40109 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/43366 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-201206-30.xml vendor-advisoryx_refsource_GENTOO
- http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021797.1-1 vendor-advisoryx_refsource_SUNALERT
- http://www.debian.org/security/2010/dsa-1985 vendor-advisoryx_refsource_DEBIAN
- http://www.redhat.com/support/errata/RHSA-2011-0262.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/37543 vdb-entryx_refsource_BID
- http://www.sendmail.org/releases/8.14.4 x_refsource_CONFIRMPatch
- http://www.vupen.com/english/advisories/2009/3661 vdb-entryx_refsource_VUPENPatchVendor Advisory
- http://www.vupen.com/english/advisories/2010/0719 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2010/1386 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2011/0415 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2009-4565 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=552622 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2009-4565
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10255 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11822 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2009-4565
Change history (0)
No recorded changes yet.