Home

Description

An Improper Check for Unusual or Exceptional Conditions vulnerability in OpenSMTPD allows local users to crash OpenSMTPD. This issue affects openSUSE Tumbleweed: from ? before 7.8.0p0-1.1.

PUBLISHED Reserved 2025-10-24 | Published 2025-11-20 | Updated 2025-11-21 | Assigner suse




MEDIUM: 6.9CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-754: Improper Check for Unusual or Exceptional Conditions

Product status

Default status
unaffected

? (custom) before 7.8.0p0-1.1
affected

Credits

Matthias Gerstner of SUSE finder

References

www.openwall.com/lists/oss-security/2025/10/31/3

security.opensuse.org/2025/10/31/opensmtpd-local-DoS.html exploit

bugzilla.suse.com/show_bug.cgi?id=CVE-2025-62875

security.opensuse.org/2025/10/31/opensmtpd-local-DoS.html

cve.org (CVE-2025-62875)

nvd.nist.gov (CVE-2025-62875)

Download JSON