CVE-2020-8794

critical
Published — · Modified —
CVSS v3
CVSS v2
VIR risk
9.5

Description

OpenSMTPD before 6.6.4 allows remote code execution because of an out-of-bounds read in mta_io in mta_session.c for multi-line replies. Although this vulnerability affects the client side of OpenSMTPD, it is possible to attack a server because the server code launches the client code during bounce handling.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2020-8794

vendor Authored 2026-05-27

Vendor advisory: arch — https://security.archlinux.org/ASA-202002-13

OS impact

OSVersionStatusFixed in
arch archfixed6.6.4p1-1
debian debianbookwormfixed6.6.4p1-1
debian debianbullseyefixed6.6.4p1-1
debian debianforkyfixed6.6.4p1-1
debian debiansidfixed6.6.4p1-1
debian debiantrixiefixed6.6.4p1-1

References

Verify integrity in audit chain (admin only). AS-IS.