CVE-2012-0802: Spamdyke

High severity, CVSS 7.5. EPSS: 4.6% chance of exploitation in the next 30 days.

Multiple buffer overflows in Spamdyke before 4.3.0 might allow remote attackers to execute arbitrary code via vectors related to "serious errors in the usage of snprintf()/vsnprintf()" in which the return values may be larger than the size of the buffer.

Affected products

  • Spamdyke Spamdyke: up to and including 4.2.1; version 3.0.0 only; version 3.0.1 only; version 3.1.0 only; version 3.1.1 only; version 3.1.2 only; …

Published 2012-06-19. Last modified 2026-06-16.