Vulnerabilities > CVE-2009-0770 - Remote Denial of Service vulnerability in dkim-milter 'p' flag

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
dkim
nessus

Summary

dkim-milter 2.6.0 through 2.8.0 allows remote attackers to cause a denial of service (crash) by signing a message with a key that has been revoked in DNS, which triggers an assertion error.

Nessus

NASL familyDebian Local Security Checks
NASL idDEBIAN_DSA-1728.NASL
descriptionIt was discovered that dkim-milter, an implementation of the DomainKeys Identified Mail protocol, may crash during DKIM verification if it encounters a specially crafted or revoked public key record in DNS.
last seen2020-06-01
modified2020-06-02
plugin id35752
published2009-03-02
reporterThis script is Copyright (C) 2009-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
sourcehttps://www.tenable.com/plugins/nessus/35752
titleDebian DSA-1728-1 : dkim-milter - improper assertion