Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-10691

Опубликовано: 24 апр. 2019
Источник: debian

Описание

The JSON encoder in Dovecot before 2.3.5.2 allows attackers to repeatedly crash the authentication service by attempting to authenticate with an invalid UTF-8 sequence as the username.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dovecotfixed1:2.3.4.1-4package
dovecotnot-affectedstretchpackage
dovecotnot-affectedjessiepackage

Примечания

  • https://www.openwall.com/lists/oss-security/2019/04/18/3

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 7 лет назад

The JSON encoder in Dovecot before 2.3.5.2 allows attackers to repeatedly crash the authentication service by attempting to authenticate with an invalid UTF-8 sequence as the username.

CVSS3: 7.5
redhat
почти 7 лет назад

The JSON encoder in Dovecot before 2.3.5.2 allows attackers to repeatedly crash the authentication service by attempting to authenticate with an invalid UTF-8 sequence as the username.

CVSS3: 7.5
nvd
почти 7 лет назад

The JSON encoder in Dovecot before 2.3.5.2 allows attackers to repeatedly crash the authentication service by attempting to authenticate with an invalid UTF-8 sequence as the username.

suse-cvrf
почти 7 лет назад

Security update for dovecot23

suse-cvrf
почти 7 лет назад

Security update for dovecot23