Trusted Domain · Opendmarc · CVE-2026-101016
**Name of the Vulnerable Software and Affected Versions**
Trusted Domain Project OpenDMARC versions prior to 1.4.3
**Description**
An issue exists in the `opendmarc policy parse dmarc()` function within the `libopendmarc/opendmarc policy.c` library. Remote exploitation is possible through the manipulation of the `fo`, `rf`, `ri`, `pct`, `sp`, `adkim`, `aspf`, `rua`, or `ruf` arguments, which leads to the handling of exceptional conditions.
**Recommendations**
Update Trusted Domain Project OpenDMARC to a version newer than 1.4.2.