Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-Id: <4BEB436C-9471-446E-9795-6B3AACEDDAB4@alchemistowl.org>
Date: Thu, 5 Dec 2019 12:04:45 +0100
From: Arrigo Triulzi <arrigo@...hemistowl.org>
To: oss-security@...ts.openwall.com
Subject: Re: Authentication vulnerabilities in OpenBSD

On 5 Dec 2019, at 11:44, Georgi Guninski <gguninski@...il.com> wrote:
> 
> On Wed, Dec 4, 2019 at 10:51 PM Qualys Security Advisory <qsa@...lys.com> wrote:
>> 
>> 
>> Qualys Security Advisory
>> 
>> Authentication vulnerabilities in OpenBSD
>> 
> 
> openbsd doesn't count these as remote holes in default install, right?

By default OpenSMTPd listens only on localhost:25 and is not configured to offer SMTP AUTH

Arrigo

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.