Back

MEDIUM

Trusted Domain Project OpenDMARC opendmarc_policy.c opendmarc_policy_parse_dmarc exceptional condition

Published Sep 28, 2026

Description

A vulnerability has been found in Trusted Domain Project OpenDMARC up to 1.4.2. This affects the function opendmarc_policy_parse_dmarc in the library libopendmarc/opendmarc_policy.c. The manipulation of the argument fo/rf/ri/pct/sp/adkim/aspf/rua/ruf leads to handling of exceptional conditions. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Affected products

Remediation

Red Hat statement

OpenDMARC is not shipped in any Red Hat product. It is available only in Fedora and EPEL community repositories.

Red Hat mitigation

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Metrics

Weaknesses (2)

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Sep 28, 2026
Updated Sep 28, 2026
Reserved Sep 27, 2026
CISA Vulnrichment
Updated Sep 28, 2026
NVD
Status Received
Modified Sep 28, 2026
Red Hat
Severity Moderate
Public date Sep 28, 2026