Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cpfv-hj4g-93jr

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

In Dovecot before 2.3.9.2, an attacker can crash a push-notification driver with a crafted email when push notifications are used, because of a NULL Pointer Dereference. The email must use a group address as either the sender or the recipient.

In Dovecot before 2.3.9.2, an attacker can crash a push-notification driver with a crafted email when push notifications are used, because of a NULL Pointer Dereference. The email must use a group address as either the sender or the recipient.

EPSS

Процентиль: 79%
0.01213
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 6 лет назад

In Dovecot before 2.3.9.2, an attacker can crash a push-notification driver with a crafted email when push notifications are used, because of a NULL Pointer Dereference. The email must use a group address as either the sender or the recipient.

CVSS3: 5.3
redhat
около 6 лет назад

In Dovecot before 2.3.9.2, an attacker can crash a push-notification driver with a crafted email when push notifications are used, because of a NULL Pointer Dereference. The email must use a group address as either the sender or the recipient.

CVSS3: 5.3
nvd
около 6 лет назад

In Dovecot before 2.3.9.2, an attacker can crash a push-notification driver with a crafted email when push notifications are used, because of a NULL Pointer Dereference. The email must use a group address as either the sender or the recipient.

CVSS3: 5.3
debian
около 6 лет назад

In Dovecot before 2.3.9.2, an attacker can crash a push-notification d ...

EPSS

Процентиль: 79%
0.01213
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-476