VYPR
Unrated severityNVD Advisory· Published Aug 27, 2003· Updated Apr 16, 2026

CVE-2003-0468

CVE-2003-0468

Description

Postfix 1.1.11 and earlier allows remote attackers to use Postfix to conduct "bounce scans" or DDos attacks of other hosts via an email address to the local host containing the target IP address and service name followed by a "!" string, which causes Postfix to attempt to use SMTP to communicate with the target on the associated port.

Affected products

8
  • cpe:2.3:a:wietse_venema:postfix:1.0.21:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:wietse_venema:postfix:1.0.21:*:*:*:*:*:*:*
    • cpe:2.3:a:wietse_venema:postfix:1.1.11:*:*:*:*:*:*:*
    • cpe:2.3:a:wietse_venema:postfix:1999-09-06:*:*:*:*:*:*:*
    • cpe:2.3:a:wietse_venema:postfix:1999-12-31:*:*:*:*:*:*:*
    • cpe:2.3:a:wietse_venema:postfix:2000-02-28:*:*:*:*:*:*:*
    • cpe:2.3:a:wietse_venema:postfix:2001-11-15:*:*:*:*:*:*:*
  • Conectiva/Linux2 versions
    cpe:2.3:o:conectiva:linux:7.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:conectiva:linux:7.0:*:*:*:*:*:*:*
    • cpe:2.3:o:conectiva:linux:8.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

9

News mentions

0

No linked articles in our index yet.