Skip to content

Commit c749cfc

Browse files
committed
doc: use CVEs for SMPT smuggling, add sendmail
1 parent aa6a8a0 commit c749cfc

File tree

1 file changed

+4
-3
lines changed

1 file changed

+4
-3
lines changed

doc/pkg-vulnerabilities

+4-3
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
# $NetBSD: pkg-vulnerabilities,v 1.96 2023/12/23 20:23:40 thor Exp $
1+
# $NetBSD: pkg-vulnerabilities,v 1.97 2023/12/24 09:53:03 wiz Exp $
22
#
33
#FORMAT 1.0.0
44
#
@@ -25817,12 +25817,13 @@ proftpd<1.3.8b extension-negotiation-downgrade https://nvd.nist.gov/vuln/detail/
2581725817
dropbear<2022.83nb1 extension-negotiation-downgrade https://nvd.nist.gov/vuln/detail/CVE-2023-48795
2581825818
erlang<26.2.1 extension-negotiation-downgrade https://nvd.nist.gov/vuln/detail/CVE-2023-48795
2581925819
libssh2<1.11.0nb2 extension-negotiation-downgrade https://nvd.nist.gov/vuln/detail/CVE-2023-48795
25820-
postfix<3.8.4 email-spoofing https://www.postfix.org/smtp-smuggling.html
25820+
postfix<3.8.4 email-spoofing https://nvd.nist.gov/vuln/detail/CVE-2023-51764
2582125821
mysqld_exporter<0.15.1 auth-bypass https://pkg.go.dev/vuln/GO-2022-1130
2582225822
mysqld_exporter<0.15.1 denial-of-service https://pkg.go.dev/vuln/GO-2023-1571
2582325823
postgres_exporter<0.15.0 auth-bypass https://pkg.go.dev/vuln/GO-2022-1130
2582425824
postgres_exporter<0.15.0 denial-of-service https://pkg.go.dev/vuln/GO-2023-1571
2582525825
git-lfs<3.4.1 denial-of-service https://pkg.go.dev/vuln/GO-2023-1571
25826-
exim-[0-9]* email-spoofing https://bugs.exim.org/show_bug.cgi?id=3063
25826+
exim-[0-9]* email-spoofing https://nvd.nist.gov/vuln/detail/CVE-2023-51766
2582725827
nuclei<3.1.3 man-in-the-middle https://pkg.go.dev/vuln/GO-2023-2402
2582825828
glow<1.5.1 man-in-the-middle https://pkg.go.dev/vuln/GO-2023-2402
25829+
sendmail-[0-9]* email-spoofing https://nvd.nist.gov/vuln/detail/CVE-CVE-2023-51765

0 commit comments

Comments
 (0)