Related Vulnerabilities: CVE-2020-8794  

An out-of-bounds read vulnerability has been found in the client-side code of OpenSMTPD <= 6.6.3p1, leading to arbitrary code execution via a crafted SMTP transaction.

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

An out-of-bounds read vulnerability has been found in the client-side code of OpenSMTPD <= 6.6.3p1, leading to arbitrary code execution via a crafted SMTP transaction.

AVG-1105 opensmtpd 6.6.3p1-1 6.6.4p1-1 Critical Fixed

https://www.qualys.com/2020/02/24/cve-2020-8794/lpe-rce-opensmtpd-default-install.txt