Skip to content
Noroxi

postsrsd project records

2 published records for vendor postsrsd project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 20
  2. 21

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

2 records
  • srs2.c in PostSRSd before 1.10 allows remote attackers to cause a denial of service (CPU consumption) via a long timestamp tag in an SRS add

    HighCVSS 7.5No exploitEPSS 3%

    postsrsd project · postsrsdDec 20, 2020

  • PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sends certain long data fields such as multiple concatenated em

    MediumCVSS 5.3No exploitEPSS 2%

    postsrsd project · postsrsdJun 28, 2021