CVE-2019-16378
Summary
| CVE | CVE-2019-16378 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-09-17 12:15:00 UTC |
| Updated | 2023-11-07 03:05:00 UTC |
| Description | OpenDMARC through 1.3.2 and 1.4.x through 1.4.0-Beta1 is prone to a signature-bypass vulnerability with multiple From: addresses, which might affect applications that consider a domain name to be relevant to the origin of an e-mail message. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 31 Update: opendmarc-1.3.2-1.fc31 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| oss-security - OpenDMARC signature bypass with multiple From addresses |
MISC |
www.openwall.com |
Mailing List, Third Party Advisory |
| oss-security - Re: OpenDMARC signature bypass with multiple From
addresses |
MLIST |
www.openwall.com |
|
| #940081 - opendmarc: CVE-2019-16378: signature bypass with multiple From addresses - Debian Bug report logs |
MISC |
bugs.debian.org |
Mailing List, Third Party Advisory |
| [SECURITY] Fedora 29 Update: opendmarc-1.3.2-1.fc29 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| Fix multiple addresses in From vulnerability by panpilkarz · Pull Request #48 · trusteddomainproject/OpenDMARC · GitHub |
MISC |
github.com |
Patch, Third Party Advisory |
| [SECURITY] Fedora 30 Update: opendmarc-1.3.2-1.fc30 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| USN-4567-1: OpenDMARC vulnerability | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| [SECURITY] Fedora 29 Update: opendmarc-1.3.2-1.fc29 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| Bugtraq: [SECURITY] [DSA 4526-1] opendmarc security update |
BUGTRAQ |
seclists.org |
|
| [SECURITY] Fedora 30 Update: opendmarc-1.3.2-1.fc30 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 31 Update: opendmarc-1.3.2-1.fc31 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| Debian -- Security Information -- DSA-4526-1 opendmarc |
DEBIAN |
www.debian.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 690760 Free Berkeley Software Distribution (FreeBSD) Security Update for opendmarc - Multiple Vulnerabilities (937aa1d6-685e-11ec-a636-000c29061ce6)