Sendmail 8.9.0 through 8.12.6 allows remote attackers to bypass relaying restrictions enforced by the 'check_relay' function by spoofing a blank DNS hostname.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade sendmail | Jul 30, 2024 | Dec 31, 2002 |
| Hpux | — | Apply patch PHNE_40393 from HPUpdate SMAIL-811.INETSVCS-SMAIL to the latest versionApply patch PHNE_40388 from HP | Aug 11, 2017 | Dec 31, 2002 |
| Sendmail | — | Upgrade to the latest version of Sendmail. | Jun 5, 2014 | Dec 31, 2002 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub