Postfix 1.1.11 and previous versions allows remote malicious users to use Postfix to conduct "bounce scans" or DDos attacks of other hosts via an email address to the local host containing the target IP address and service name followed by a "!" string, which causes Postfix to attempt to use SMTP to communicate with the target on the associated port.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
wietse venema postfix 2000-02-28 |
||
wietse venema postfix 2001-11-15 |
||
conectiva linux 7.0 |
||
conectiva linux 8.0 |
||
wietse venema postfix 1999-09-06 |
||
wietse venema postfix 1999-12-31 |
||
wietse venema postfix 1.0.21 |
||
wietse venema postfix 1.1.11 |