PT-2023-22230 · Unknown+2 · Opensmtpd Portable+2

Published

2023-04-04

·

Updated

2025-11-04

·

CVE-2023-29323

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OpenBSD versions prior to 7.1 errata 024 OpenBSD versions prior to 7.2 errata 020 OpenSMTPD Portable versions prior to 7.0.0-portable commit f748277
Description The issue can cause ascii load sockaddr in smtpd to abort upon a connection from a local, scoped IPv6 address.
Recommendations For OpenBSD versions prior to 7.1 errata 024, apply errata 024 to resolve the issue. For OpenBSD versions prior to 7.2 errata 020, apply errata 020 to resolve the issue. For OpenSMTPD Portable versions prior to 7.0.0-portable commit f748277, update to a version that includes commit f748277 or later to resolve the issue.

Fix

Related Identifiers

CVE-2023-29323
ROSA-SA-2023-2210

Affected Products

Debian
Openbsd
Opensmtpd Portable