Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2008-7258

Disclosure Date: August 20, 2010 (last updated November 08, 2023)
The standardise function in Anibal Monsalve Salazar sSMTP 2.61 and 2.62 allows local users to cause a denial of service (application exit) via an e-mail message containing a long line that begins with a . (dot) character. NOTE: CVE disputes this issue because it is solely a usability problem for senders of messages with certain long lines, and has no security impact
0
Attacker Value
Unknown

CVE-2008-3962

Disclosure Date: September 11, 2008 (last updated October 04, 2023)
The from_format function in ssmtp.c in ssmtp 2.61 and 2.62, in certain configurations, uses uninitialized memory for the From: field of an e-mail message, which might allow remote attackers to obtain sensitive information (memory contents) in opportunistic circumstances by reading a message.
0
Attacker Value
Unknown

CVE-2004-0423

Disclosure Date: July 07, 2004 (last updated February 22, 2025)
The log_event function in ssmtp 2.50.6 and earlier allows local users to overwrite arbitrary files via a symlink attack on the ssmtp.log temporary log file.
0
Attacker Value
Unknown

CVE-2004-0156

Disclosure Date: June 01, 2004 (last updated February 22, 2025)
Format string vulnerabilities in the (1) die or (2) log_event functions for ssmtp before 2.50.6 allow remote mail relays to cause a denial of service and possibly execute arbitrary code.
0