Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-2901

Опубликовано: 14 июл. 2020
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2020-2901: dovecot security update (IMPORTANT)

[1:2.3.8-2.1]

  • fix CVE-2020-10957: malformed NOOP commands leads to DoS (#1840353)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

dovecot

2.3.8-2.el8_2.1

dovecot-devel

2.3.8-2.el8_2.1

dovecot-mysql

2.3.8-2.el8_2.1

dovecot-pgsql

2.3.8-2.el8_2.1

dovecot-pigeonhole

2.3.8-2.el8_2.1

Oracle Linux x86_64

dovecot

2.3.8-2.el8_2.1

dovecot-devel

2.3.8-2.el8_2.1

dovecot-mysql

2.3.8-2.el8_2.1

dovecot-pgsql

2.3.8-2.el8_2.1

dovecot-pigeonhole

2.3.8-2.el8_2.1

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 5 лет назад

In Dovecot before 2.3.10.1, unauthenticated sending of malformed parameters to a NOOP command causes a NULL Pointer Dereference and crash in submission-login, submission, or lmtp.

CVSS3: 7.5
redhat
больше 5 лет назад

In Dovecot before 2.3.10.1, unauthenticated sending of malformed parameters to a NOOP command causes a NULL Pointer Dereference and crash in submission-login, submission, or lmtp.

CVSS3: 7.5
nvd
больше 5 лет назад

In Dovecot before 2.3.10.1, unauthenticated sending of malformed parameters to a NOOP command causes a NULL Pointer Dereference and crash in submission-login, submission, or lmtp.

CVSS3: 7.5
debian
больше 5 лет назад

In Dovecot before 2.3.10.1, unauthenticated sending of malformed param ...

github
больше 3 лет назад

In Dovecot before 2.3.10.1, unauthenticated sending of malformed parameters to a NOOP command causes a NULL Pointer Dereference and crash in submission-login, submission, or lmtp.