Opensmtpd / Opensmtpd
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-62875 | Local DoS in OpenSMTPD via UNIX domain socket smtpd.sock | MEDIUM | 6.9 | Nov 20, 2025 |
| CVE-2023-29323 | ascii_load_sockaddr in smtpd in OpenBSD before 7.1 errata 024 and 7.2 before errata 020, and OpenSMTPD Portable before 7.0.0-portable commit f748277, can abort… | HIGH | 7.8 | Apr 4, 2023 |
| CVE-2020-35679 | smtpd/table.c in OpenSMTPD before 6.8.0p1 lacks a certain regfree, which might allow attackers to trigger a "very significant" memory leak via messages to an i… | HIGH | 7.5 | Dec 24, 2020 |
| CVE-2020-35680 | smtpd/lka_filter.c in OpenSMTPD before 6.8.0p1, in certain configurations, allows remote attackers to cause a denial of service (NULL pointer dereference and d… | HIGH | 7.5 | Dec 24, 2020 |
| CVE-2020-8794 | OpenSMTPD before 6.6.4 allows remote code execution because of an out-of-bounds read in mta_io in mta_session.c for multi-line replies. Although this vulnerabi… | CRITICAL | 9.8 | Feb 25, 2020 |
| CVE-2020-8793 | OpenSMTPD before 6.6.4 allows local users to read arbitrary files (e.g., on some Linux distributions) because of a combination of an untrusted search path in m… | MEDIUM | 4.7 | Feb 25, 2020 |
Showing 1 to 6 of 6 CVEs