Логотип exploitDog
bind:"CVE-2019-7524" OR bind:"CVE-2019-3814"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2019-7524" OR bind:"CVE-2019-3814"

Количество 20

Количество 20

suse-cvrf логотип

openSUSE-SU-2019:1220-1

больше 6 лет назад

Security update for dovecot22

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:0900-1

больше 6 лет назад

Security update for dovecot22

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1062

больше 5 лет назад

ELSA-2020-1062: dovecot security and bug fix update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2019-7524

больше 6 лет назад

In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker can cause a buffer overflow in the indexer-worker process, which can be used to elevate to root. This occurs because of missing checks in the fts and pop3-uidl components.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2019-7524

больше 6 лет назад

In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker can cause a buffer overflow in the indexer-worker process, which can be used to elevate to root. This occurs because of missing checks in the fts and pop3-uidl components.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2019-7524

больше 6 лет назад

In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker can cause a buffer overflow in the indexer-worker process, which can be used to elevate to root. This occurs because of missing checks in the fts and pop3-uidl components.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2019-7524

больше 6 лет назад

In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2019-3814

больше 6 лет назад

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.

CVSS3: 7.7
EPSS: Низкий
redhat логотип

CVE-2019-3814

больше 6 лет назад

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.

CVSS3: 7.7
EPSS: Низкий
nvd логотип

CVE-2019-3814

больше 6 лет назад

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.

CVSS3: 7.7
EPSS: Низкий
debian логотип

CVE-2019-3814

больше 6 лет назад

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 in ...

CVSS3: 7.7
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1212-1

больше 6 лет назад

Security update for dovecot23

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:0876-1

больше 6 лет назад

Security update for dovecot23

EPSS: Низкий
github логотип

GHSA-64hp-rrrv-2xwx

больше 3 лет назад

In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker can cause a buffer overflow in the indexer-worker process, which can be used to elevate to root. This occurs because of missing checks in the fts and pop3-uidl components.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2019-01562

больше 6 лет назад

Уязвимость почтового сервера Dovecot, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю повысить свои привилегии

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:0243-1

больше 6 лет назад

Security update for dovecot23

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:0414-1

больше 6 лет назад

Security update for dovecot23

EPSS: Низкий
github логотип

GHSA-2727-qgh5-485g

около 3 лет назад

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.

CVSS3: 6.8
EPSS: Низкий
oracle-oval логотип

ELSA-2019-3467

почти 6 лет назад

ELSA-2019-3467: dovecot security and bug fix update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2019-01416

больше 6 лет назад

Уязвимость почтового сервера Dovecot, связанная с ошибками подтверждения подлинности сертификата, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 6.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
openSUSE-SU-2019:1220-1

Security update for dovecot22

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:0900-1

Security update for dovecot22

больше 6 лет назад
oracle-oval логотип
ELSA-2020-1062

ELSA-2020-1062: dovecot security and bug fix update (MODERATE)

больше 5 лет назад
ubuntu логотип
CVE-2019-7524

In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker can cause a buffer overflow in the indexer-worker process, which can be used to elevate to root. This occurs because of missing checks in the fts and pop3-uidl components.

CVSS3: 8.8
0%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-7524

In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker can cause a buffer overflow in the indexer-worker process, which can be used to elevate to root. This occurs because of missing checks in the fts and pop3-uidl components.

CVSS3: 6.5
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-7524

In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker can cause a buffer overflow in the indexer-worker process, which can be used to elevate to root. This occurs because of missing checks in the fts and pop3-uidl components.

CVSS3: 8.8
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-7524

In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker ...

CVSS3: 8.8
0%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-3814

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.

CVSS3: 7.7
0%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-3814

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.

CVSS3: 7.7
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-3814

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.

CVSS3: 7.7
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-3814

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 in ...

CVSS3: 7.7
0%
Низкий
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1212-1

Security update for dovecot23

0%
Низкий
больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:0876-1

Security update for dovecot23

0%
Низкий
больше 6 лет назад
github логотип
GHSA-64hp-rrrv-2xwx

In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker can cause a buffer overflow in the indexer-worker process, which can be used to elevate to root. This occurs because of missing checks in the fts and pop3-uidl components.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2019-01562

Уязвимость почтового сервера Dovecot, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю повысить свои привилегии

CVSS3: 7.8
0%
Низкий
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:0243-1

Security update for dovecot23

0%
Низкий
больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:0414-1

Security update for dovecot23

0%
Низкий
больше 6 лет назад
github логотип
GHSA-2727-qgh5-485g

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.

CVSS3: 6.8
0%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2019-3467

ELSA-2019-3467: dovecot security and bug fix update (MODERATE)

почти 6 лет назад
fstec логотип
BDU:2019-01416

Уязвимость почтового сервера Dovecot, связанная с ошибками подтверждения подлинности сертификата, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 6.8
0%
Низкий
больше 6 лет назад

Уязвимостей на страницу