CVE-2002-0906
EPSS 5.5%
Description
Buffer overflow in Sendmail before 8.12.5, when configured to use a custom DNS map to query TXT records, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malicious DNS server.
How to fix CVE-2002-0906
To remediate CVE-2002-0906, upgrade the affected package to a fixed version below.
- Debian/sendmail—upgrade to 8.12.5 or later
Is CVE-2002-0906 being exploited?
Moderate — EPSS is 5.5%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 8.12.5