Jianjun Chen, Vern Paxson and Jian Jiang discovered that OpenDMARC incorrectly handled certain inputs. If a user or an automated system were tricked into receiving crafted inputs, an attacker could possibly use this to falsify the domain of an e-mails origin. (CVE-2020-12272)
Patrik Lantz discovered that OpenDMARC incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to cause a denial of service. (CVE-2020-12460)
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "libopendmarc-dev": "1.3.1+dfsg-3ubuntu0.1~esm1", "libopendmarc2-dbgsym": "1.3.1+dfsg-3ubuntu0.1~esm1", "opendmarc-dbgsym": "1.3.1+dfsg-3ubuntu0.1~esm1", "libopendmarc2": "1.3.1+dfsg-3ubuntu0.1~esm1", "rddmarc": "1.3.1+dfsg-3ubuntu0.1~esm1", "opendmarc": "1.3.1+dfsg-3ubuntu0.1~esm1" } ] }
{ "availability": "No subscription required", "binaries": [ { "libopendmarc-dev": "1.3.2-3ubuntu0.2", "libopendmarc2-dbgsym": "1.3.2-3ubuntu0.2", "opendmarc-dbgsym": "1.3.2-3ubuntu0.2", "libopendmarc2": "1.3.2-3ubuntu0.2", "rddmarc": "1.3.2-3ubuntu0.2", "opendmarc": "1.3.2-3ubuntu0.2" } ] }