DEBIAN-CVE-2005-1127

Source
https://security-tracker.debian.org/tracker/CVE-2005-1127
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-1127.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2005-1127
Upstream
Downstream
Published
2005-05-02T04:00:00Z
Modified
2026-04-28T20:05:49.171542Z
Summary
[none]
Details

Format string vulnerability in the log function in Net::Server 0.87 and earlier, as used in Postfix Greylisting Policy Server (Postgrey) 1.18 and earlier, and possibly other products, allows remote attackers to cause a denial of service (crash) via format string specifiers that are not properly handled before being sent to syslog, as demonstrated using sender addresses to Postgrey.

References

Affected packages

Debian:11
libnet-server-perl

Package

Name
libnet-server-perl
Purl
pkg:deb/debian/libnet-server-perl?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.89-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-1127.json"
postgrey

Package

Name
postgrey
Purl
pkg:deb/debian/postgrey?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.22-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-1127.json"
Debian:12
libnet-server-perl

Package

Name
libnet-server-perl
Purl
pkg:deb/debian/libnet-server-perl?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.89-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-1127.json"
postgrey

Package

Name
postgrey
Purl
pkg:deb/debian/postgrey?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.22-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-1127.json"
Debian:13
libnet-server-perl

Package

Name
libnet-server-perl
Purl
pkg:deb/debian/libnet-server-perl?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.89-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-1127.json"
postgrey

Package

Name
postgrey
Purl
pkg:deb/debian/postgrey?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.22-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-1127.json"
Debian:14
libnet-server-perl

Package

Name
libnet-server-perl
Purl
pkg:deb/debian/libnet-server-perl?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.89-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-1127.json"
postgrey

Package

Name
postgrey
Purl
pkg:deb/debian/postgrey?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.22-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-1127.json"