{"id":"CVE-2020-12460","details":"OpenDMARC through 1.3.2 and 1.4.x through 1.4.0-Beta1 has improper null termination in the function opendmarc_xml_parse that can result in a one-byte heap overflow in opendmarc_xml when parsing a specially crafted DMARC aggregate report. This can cause remote memory corruption when a '\\0' byte overwrites the heap metadata of the next chunk and its PREV_INUSE flag.","modified":"2026-07-08T05:56:31.553410917Z","published":"2020-07-27T23:15:12.373Z","database_specific":{"unresolved_ranges":[{"cpes":["cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"9.0"},{"last_affected":"9.0"}],"source":"CPE_STRING","vendor_product":"debian:debian_linux"},{"cpes":["cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*","cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"33"},{"last_affected":"33"},{"introduced":"34"},{"last_affected":"34"}],"source":"CPE_STRING","vendor_product":"fedoraproject:fedora"}]},"references":[{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2D4JGHMALEJEWWG56DKR5OZB22TK7W5B/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JHDKMCZGE3W4XBP76NLI2Q7IOZHXLD4A/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KBOGOQOK3TIWWJV66MW5YWNRJAFFYGR5/"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2021/04/msg00026.html"},{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/202011-02"},{"type":"ADVISORY","url":"https://sourceforge.net/projects/opendmarc/"},{"type":"EVIDENCE","url":"https://github.com/trusteddomainproject/OpenDMARC/issues/64"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/trusteddomainproject/opendmarc","events":[{"introduced":"0"},{"last_affected":"0d65077648569076c103b73f30ca86c14e1811a5"},{"introduced":"12d9064bef02f152df233fab2f4bd863f0c28820"},{"last_affected":"363e4a82231b4366bdb92e72e612331ecda70c01"}],"database_specific":{"cpe":["cpe:2.3:a:trusteddomain:opendmarc:*:*:*:*:*:*:*:*","cpe:2.3:a:trusteddomain:opendmarc:1.4.0:beta0:*:*:*:*:*:*","cpe:2.3:a:trusteddomain:opendmarc:1.4.0:beta1:*:*:*:*:*:*"],"extracted_events":[{"introduced":"0"},{"last_affected":"1.3.2"},{"introduced":"1.4.0-beta0"},{"last_affected":"1.4.0-beta0"},{"introduced":"1.4.0-beta1"},{"last_affected":"1.4.0-beta1"}],"source":["CPE_RANGE","CPE_STRING"]}}],"versions":["1.4.0-beta0","1.4.0-beta1","rel-opendmarc-1-4-0-Beta0","rel-opendmarc-1-3-2","rel-opendmarc-1-4-0-Beta1","rel-opendmarc-1-3-1","rel-opendmarc-1-3-1-Beta1","rel-opendmarc-1-3-1-Beta0","rel-opendmarc-1-3-0","rel-opendmarc-1-3-0-Beta4","rel-opendmarc-1-3-0-Beta3","rel-opendmarc-1-3-0-Beta0","rel-opendmarc-1-3-0-Beta2","rel-opendmarc-1-3-0-Beta1","rel-opendmarc-1-2-1-Beta2","rel-opendmarc-1-2-1-Beta1","rel-opendmarc-1-2-1-Beta0","draft-dmarc-base-03","rel-opendmarc-1-2-0-Beta3","rel-opendmarc-1-2-0","rel-opendmarc-1-2-0-Beta2","rel-opendmarc-1-1-2","rel-opendmarc-1-1-1","rel-opendmarc-1-1-0","rel-opendmarc-1-1-0-Beta2","rel-opendmarc-1-1-0-Beta1","rel-opendmarc-1-1-0-Beta0","draft-dmarc-base-00-03","rel-opendmarc-1-0-1","rel-opendmarc-1-0-0","rel-opendmarc-1-0-0-Beta0","rel-opendmarc-0-2-2","rel-opendmarc-0-2-1","rel-opendmarc-0-2-0","rel-opendmarc-0-2-0-Beta3","rel-opendmarc-0-2-0-Beta2","rel-opendmarc-0-2-0-Beta1","rel-opendmarc-0-2-0-Beta0","rel-opendmarc-0-1-8","rel-opendmarc-0-1-7","rel-opendmarc-0-1-6","rel-opendmarc-0-1-5","rel-opendmarc-0-1-4","rel-opendmarc-0-1-3","rel-opendmarc-0-1-2","rel-opendmarc-0-1-1","rel-opendmarc-0-1-0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-12460.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}