CVE.RADIO
FREN

CVE-2011-1720

postfixVulnerabilityPatched

No public exploitation has been reported so far. A fixed version is available (see the table below).

Recommended action: Update to the fixed version listed for your distribution using the native package manager.

Affected & fixed versions by distribution

Versions are the native distribution strings (backport-aware): RHEL/Debian/SUSE backport fixes, so compare with the distro version comparator (dpkg / rpm / vercmp), not the upstream version.

DistributionPackageAffectedFixed versionStatus
Debian:11postfix-2.8.3-1fixed
Debian:12postfix-2.8.3-1fixed
Debian:13postfix-2.8.3-1fixed
Debian:14postfix-2.8.3-1fixed
Debian:5.0postfix-2.5.5-1.1+lenny1fixed
Debian:6.0postfix-2.7.1-1+squeeze1fixed
Red Hat:enterprise_linux:4::aspostfix-2:2.2.10-1.5.el4fixed
Red Hat:enterprise_linux:4::desktoppostfix-2:2.2.10-1.5.el4fixed
Red Hat:enterprise_linux:4::espostfix-2:2.2.10-1.5.el4fixed
Red Hat:enterprise_linux:4::wspostfix-2:2.2.10-1.5.el4fixed
Red Hat:enterprise_linux:5::serverpostfix-2:2.3.3-2.3.el5_6fixed
Red Hat:enterprise_linux:6::serverpostfix-2:2.6.6-2.2.el6_1fixed

Sources