From ac4d9826668d8a5e520287f679f2ec3d636a457e Mon Sep 17 00:00:00 2001 From: Moritz Muehlenhoff Date: Wed, 29 Jan 2020 14:01:58 -0800 Subject: add stub entry for second opensmtpd issue --- data/CVE/list | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/data/CVE/list b/data/CVE/list index 414e53a0db..d82d0e7b92 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -2537,6 +2537,11 @@ CVE-2020-7249 (SMC D3G0804W 3.5.2.5-LAT_GA devices allow XSS via the SSID field NOT-FOR-US: SMC D3G0804W devices CVE-2020-7248 RESERVED +CVE-2020-XXXX [opensmtpd DoS via opportunistic TLS downgrade] + - opensmtpd 6.6.2p1-1 + [stretch] - opensmtpd 6.0.2p1-2+deb9u2 + [buster] - opensmtpd 6.0.3p1-5+deb10u3 + NOTE: https://ftp.openbsd.org/pub/OpenBSD/patches/6.6/common/018_smtpd_tls.patch.sig CVE-2020-7247 (smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6 ...) {DSA-4611-1} - opensmtpd 6.6.2p1-1 -- cgit v1.2.3