Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-40018

Опубликовано: 28 авг. 2026
Источник: redhat
CVSS3: 7.4

Описание

None None None No publicly available exploits are known.

A flaw was found in Dovecot. A remote attacker with high attack complexity could exploit this vulnerability to gain access to sensitive information and modify data without requiring any user interaction or privileges.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10dovecotAffected
Red Hat Enterprise Linux 6dovecotOut of support scope
Red Hat Enterprise Linux 7dovecotAffected
Red Hat Enterprise Linux 8dovecotAffected
Red Hat Enterprise Linux 9dovecotAffected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-89
https://bugzilla.redhat.com/show_bug.cgi?id=2525584dovecot: Dovecot: MySQL multi-byte escaping wrong

7.4 High

CVSS3

Связанные уязвимости

CVSS3: 7.4
ubuntu
16 дней назад

None None None No publicly available exploits are known.

CVSS3: 7.4
nvd
16 дней назад

None None None No publicly available exploits are known.

CVSS3: 7.4
debian
16 дней назад

None None None No publicly available exploits are known.

CVSS3: 7.4
github
16 дней назад

None None None No publicly available exploits are known.

suse-cvrf
12 дней назад

Security update for dovecot24

7.4 High

CVSS3