[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256040

 
 

909

 
 

199103

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4825-1 dovecot -- dovecot

ID: oval:org.secpod.oval:def:69845Date: (C)2021-03-03   (M)2023-11-13
Class: PATCHFamily: unix




Several vulnerabilities have been discovered in the dovecot-dev email server. CVE-2020-24386 When imap hibernation is active, an attacker can cause dovecot-dev to discover file system directory structures and access other users" emails via specially crafted commands. CVE-2020-25275 Innokentii Sennovskiy reported that the mail delivery and parsing in dovecot-dev can crash when the 10000th MIME part is message/rfc822 . This flaw was introduced by earlier changes addressing CVE-2020-12100.

Platform:
Linux Mint 4
Product:
dovecot-dev
Reference:
DSA-4825-1
CVE-2020-24386
CVE-2020-25275
CVE    2
CVE-2020-24386
CVE-2020-25275
CPE    2
cpe:/o:linux_mint:linux_mint:4
cpe:/a:dovecot:dovecot-dev

© SecPod Technologies