Unrated severityNVD Advisory· Published Sep 11, 2008· Updated Apr 23, 2026
CVE-2008-3962
CVE-2008-3962
Description
The from_format function in ssmtp.c in ssmtp 2.61 and 2.62, in certain configurations, uses uninitialized memory for the From: field of an e-mail message, which might allow remote attackers to obtain sensitive information (memory contents) in opportunistic circumstances by reading a message.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.vupen.com/english/advisories/2008/2597nvdVendor Advisory
- www.openwall.com/lists/oss-security/2008/09/09/5nvd
- www.openwall.com/lists/oss-security/2008/09/09/6nvd
- www.openwall.com/lists/oss-security/2008/09/11/2nvd
- www.securityfocus.com/bid/31094nvd
- bugs.gentoo.org/234391nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/45038nvd
News mentions
0No linked articles in our index yet.