In Dovecot before 2.3.10.1, remote unauthenticated attackers can crash the lmtp or submission process by sending mail with an empty localpart.
References
Configurations
Information
Published : 2020-05-18 08:15
Updated : 2020-10-13 15:15
NVD link : CVE-2020-10967
Mitre link : CVE-2020-10967
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
dovecot
- dovecot