First published: Thu Sep 18 2003(Updated: )
A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sendmail | =2.1.2 | |
Sendmail | =3.0.2 | |
Sendmail | =2.2.2 | |
Sendmail Sendmail | =2.6.2 | |
Sendmail Sendmail | =8.9.2 | |
Sendmail | =2.1.1 | |
Sendmail Sendmail | =8.11.4 | |
Sendmail Sendmail | =8.8.8 | |
Sendmail Sendmail | =8.12-beta16 | |
Sendmail | =1.2 | |
Sendmail | =1.3 | |
Sendmail Sendmail | =8.11.1 | |
Sendmail Sendmail | =8.12.3 | |
Sendmail Sendmail | =8.12-beta12 | |
Sendmail | =8.9.2 | |
Sendmail | =2.2 | |
Sendmail Sendmail | =8.11.3 | |
Sendmail Sendmail | =8.12.4 | |
Sendmail | =2.2.1 | |
Sendmail Sendmail | =2.6 | |
Sendmail Sendmail | =2.6.1 | |
Sendmail Sendmail | =8.10.2 | |
Sendmail Sendmail | =8.11.0 | |
Sendmail Sendmail | =8.12.8 | |
Sendmail Sendmail | =8.12.9 | |
Sendmail Sendmail | =8.9.1 | |
Sendmail | =2.1.3 | |
Sendmail Sendmail | =8.10 | |
Sendmail Sendmail | =8.10.1 | |
Sendmail Sendmail | =8.11.5 | |
Sendmail Sendmail | =8.11.6 | |
Sendmail Sendmail | =8.12.6 | |
Sendmail Sendmail | =8.12.7 | |
Sendmail Sendmail | =8.9.0 | |
Sendmail | =2.2.3 | |
Sendmail | =2.2.4 | |
Sendmail Sendmail | =3.0 | |
Sendmail Sendmail | =3.0.1 | |
Sendmail Sendmail | =8.11.2 | |
Sendmail Sendmail | =8.12.2 | |
Sendmail Sendmail | =8.12-beta10 | |
Sendmail Sendmail | =8.9.3 | |
Sendmail | =2.1.5 | |
Sendmail | =3.0.3 | |
Sendmail Sendmail | =3.0.2 | |
Sendmail Sendmail | =3.0.3 | |
Sendmail Sendmail | =8.12.5 | |
Sendmail Sendmail | =8.12-beta5 | |
Sendmail Sendmail | =8.12-beta7 | |
Sendmail | =8.9.3 | |
Sendmail | =2.1 | |
Sendmail Sendmail | =8.12.0 | |
Sendmail Sendmail | =8.12.1 | |
Sendmail | =2.1.4 | |
Sendmail | =2.2.5 | |
Sendmail | =3.0 | |
Sendmail | =3.0.1 | |
Turbolinux Server | =6.5 | |
NetBSD NetBSD | =1.5.3 | |
NetBSD NetBSD | =1.6 | |
Apple iOS and macOS | =10.2.5 | |
HPE HP-UX | =11.11 | |
Apple macOS Server | =10.2.2 | |
Apple macOS Server | =10.2.4 | |
NetBSD NetBSD | =1.5 | |
Apple iOS and macOS | =10.2.1 | |
Apple iOS and macOS | =10.2.2 | |
Apple macOS Server | =10.2.3 | |
Gentoo Linux | =1.4-rc1 | |
IBM AIX | =5.2 | |
Turbolinux Server | =7.0 | |
Gentoo Linux | =0.5 | |
HPE HP-UX | =11.00 | |
NetBSD NetBSD | =1.5.1 | |
OpenBSD | =3.3 | |
NetBSD NetBSD | =1.5 | |
Apple iOS and macOS | =10.2.4 | |
Apple macOS Server | =10.2.5 | |
Gentoo Linux | =1.4-rc3 | |
HPE HP-UX | =11.0.4 | |
NetBSD NetBSD | =1.6.1 | |
NetBSD NetBSD | =1.6-beta | |
Turbolinux Workstation | =6.0 | |
Turbolinux Workstation | =7.0 | |
Gentoo Linux | =1.2 | |
Gentoo Linux | =1.4-rc2 | |
IBM AIX | =5.1 | |
NetBSD NetBSD | =1.5 | |
Turbolinux Server | =8.0 | |
Apple iOS and macOS | =10.2.6 | |
Apple macOS Server | =10.2.6 | |
NetBSD NetBSD | =1.5.2 | |
OpenBSD | =3.2 | |
Turbolinux Workstation | =8.0 | |
Apple iOS and macOS | =10.2 | |
Apple macOS Server | =10.2 | |
Apple macOS Server | =10.2.1 | |
Gentoo Linux | =0.7 | |
Gentoo Linux | =1.1a | |
HPE HP-UX | =11.22 | |
IBM AIX | =4.3.3 | |
Turbolinux Advanced Server | =6.0 | |
Turbolinux Server | =6.1 | |
Apple iOS and macOS | =10.2.3 | |
NetBSD NetBSD | =1.4.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2003-0681 is classified as unknown due to unclear consequences.
CVE-2003-0681 affects Sendmail versions including 2.1.1, 2.1.2, 8.12.9, and others.
To fix CVE-2003-0681, update Sendmail to a version not vulnerable to this buffer overflow issue.
CVE-2003-0681 impacts the nonstandard rulesets for recipient handling in Sendmail.
Disabling the use of the nonstandard rulesets in Sendmail can serve as a temporary workaround for CVE-2003-0681.