Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v4pj-8r82-6phx

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Dovecot before 2.3.10.1, a crafted SMTP/LMTP message triggers an unauthenticated use-after-free bug in submission-login, submission, or lmtp, and can lead to a crash under circumstances involving many newlines after a command.

In Dovecot before 2.3.10.1, a crafted SMTP/LMTP message triggers an unauthenticated use-after-free bug in submission-login, submission, or lmtp, and can lead to a crash under circumstances involving many newlines after a command.

EPSS

Процентиль: 77%
0.01029
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 5 лет назад

In Dovecot before 2.3.10.1, a crafted SMTP/LMTP message triggers an unauthenticated use-after-free bug in submission-login, submission, or lmtp, and can lead to a crash under circumstances involving many newlines after a command.

CVSS3: 5.9
redhat
больше 5 лет назад

In Dovecot before 2.3.10.1, a crafted SMTP/LMTP message triggers an unauthenticated use-after-free bug in submission-login, submission, or lmtp, and can lead to a crash under circumstances involving many newlines after a command.

CVSS3: 5.3
nvd
больше 5 лет назад

In Dovecot before 2.3.10.1, a crafted SMTP/LMTP message triggers an unauthenticated use-after-free bug in submission-login, submission, or lmtp, and can lead to a crash under circumstances involving many newlines after a command.

CVSS3: 5.3
debian
больше 5 лет назад

In Dovecot before 2.3.10.1, a crafted SMTP/LMTP message triggers an un ...

oracle-oval
около 5 лет назад

ELSA-2020-4763: dovecot security update (MODERATE)

EPSS

Процентиль: 77%
0.01029
Низкий