OpenBSD OpenSMTPD Privilege Escalation / Code Execution
Posted by deepcore on January 30, 2020 – 3:18 am
Qualys discovered a vulnerability in OpenSMTPD, OpenBSD’s mail server. This vulnerability is exploitable since May 2018 (commit a8e222352f, “switch smtpd to new grammar”) and allows an attacker to execute arbitrary shell commands, as root.
Post a reply
You must be logged in to post a comment.