Unrated severityNVD Advisory· Published May 2, 2005· Updated Apr 16, 2026
CVE-2005-1127
CVE-2005-1127
Description
Format string vulnerability in the log function in Net::Server 0.87 and earlier, as used in Postfix Greylisting Policy Server (Postgrey) 1.18 and earlier, and possibly other products, allows remote attackers to cause a denial of service (crash) via format string specifiers that are not properly handled before being sent to syslog, as demonstrated using sender addresses to Postgrey.
Affected products
3Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
16- lists.ee.ethz.ch/postgrey/msg00647.htmlnvdPatch
- secunia.com/advisories/14958nvdPatch
- lists.ee.ethz.ch/postgrey/msg00627.htmlnvd
- lists.ee.ethz.ch/postgrey/msg00630.htmlnvd
- marc.infonvd
- secunia.com/advisories/21149nvd
- secunia.com/advisories/21152nvd
- secunia.com/advisories/21164nvd
- secunia.com/advisories/21452nvd
- www.debian.org/security/2006/dsa-1121nvd
- www.debian.org/security/2006/dsa-1122nvd
- www.gentoo.org/security/en/glsa/glsa-200608-18.xmlnvd
- www.mandriva.com/security/advisoriesnvd
- www.osvdb.org/15517nvd
- www.securityfocus.com/bid/13193nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/20108nvd
News mentions
0No linked articles in our index yet.