Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-36px-qc55-gxh7

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

A denial of service flaw was found in dovecot before 2.2.34. An attacker able to generate random SNI server names could exploit TLS SNI configuration lookups, leading to excessive memory usage and the process to restart.

A denial of service flaw was found in dovecot before 2.2.34. An attacker able to generate random SNI server names could exploit TLS SNI configuration lookups, leading to excessive memory usage and the process to restart.

EPSS

Процентиль: 85%
0.02378
Низкий

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
ubuntu
почти 8 лет назад

A denial of service flaw was found in dovecot before 2.2.34. An attacker able to generate random SNI server names could exploit TLS SNI configuration lookups, leading to excessive memory usage and the process to restart.

CVSS3: 3.7
redhat
почти 8 лет назад

A denial of service flaw was found in dovecot before 2.2.34. An attacker able to generate random SNI server names could exploit TLS SNI configuration lookups, leading to excessive memory usage and the process to restart.

CVSS3: 5.9
nvd
почти 8 лет назад

A denial of service flaw was found in dovecot before 2.2.34. An attacker able to generate random SNI server names could exploit TLS SNI configuration lookups, leading to excessive memory usage and the process to restart.

CVSS3: 5.9
debian
почти 8 лет назад

A denial of service flaw was found in dovecot before 2.2.34. An attack ...

suse-cvrf
больше 7 лет назад

Security update for dovecot22

EPSS

Процентиль: 85%
0.02378
Низкий

5.9 Medium

CVSS3