CVE-2005-0337: High severity Wietse Venema Postfix vulnerability
Postfix 2.1.3, when /proc/net/ifinet6 is not available and permitmxbackup is enabled in smtpdrecipientrestrictions, allows remote attackers to bypass e-mail restrictions and perform mail relaying by sending mail to an IPv6 hostname.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0337?
CVE-2005-0337 is considered a medium severity vulnerability as it allows remote attackers to bypass e-mail restrictions and perform mail relaying.
How do I fix CVE-2005-0337?
To fix CVE-2005-0337, disable the permit_mx_backup directive in the smtpd_recipient_restrictions configuration.
Which versions of Postfix are affected by CVE-2005-0337?
CVE-2005-0337 specifically affects Postfix version 2.1.3.
What should I do if I am using a system with CVE-2005-0337?
If you are using a system with CVE-2005-0337, it is recommended to update or patch your Postfix installation to mitigate the vulnerability.
Can CVE-2005-0337 affect my email server's security?
Yes, CVE-2005-0337 can significantly impact your email server's security by allowing unauthorized mail relaying.