CVE-2023-29323: OpenBSD

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

ascii_load_sockaddr in smtpd in OpenBSD before 7.1 errata 024 and 7.2 before errata 020, and OpenSMTPD Portable before 7.0.0-portable commit f748277, can abort upon a connection from a local, scoped IPv6 address.

Affected products

  • OpenBSD OpenBSD: version 7.1 only; version 7.2 only
  • OpenSMTPD OpenSMTPD: before 7.0.0 (fixed in 7.0.0)

Published 2023-04-04. Last modified 2026-06-17.