CVE-2013-7176: FAIL2BAN

Medium severity, CVSS 5.0. EPSS: 3.2% chance of exploitation in the next 30 days.

config/filter.d/postfix.conf in the postfix filter in Fail2ban before 0.8.11 allows remote attackers to trigger the blocking of an arbitrary IP address via a crafted e-mail address that matches an improperly designed regular expression.

Affected products

  • FAIL2BAN FAIL2BAN: up to and including 0.8.10; version 0.1.0 only; version 0.1.1 only; version 0.1.2 only; version 0.3.0 only; version 0.3.1 only; …

Published 2014-02-01. Last modified 2026-06-17.