CVE-2020-12100: Receiving mail with deeply nested MIME parts leads to resource exhaustion.

2020-08-12 Thread Aki Tuomi
Open-Xchange Security Advisory 2020-08-12 Affected product: Dovecot IMAP server Internal reference: DOP-1849 (Bug ID) Vulnerability type: Uncontrolled recursion (CWE-674) Vulnerable version: 2.0 Vulnerable component: submission, lmtp, lda Fixed version: 2.3.11.3 Report confidence: Confirmed

[Dovecot-news] CVE-2020-12100: Receiving mail with deeply nested MIME parts leads to resource exhaustion.

2020-08-12 Thread Aki Tuomi
Open-Xchange Security Advisory 2020-08-12 Affected product: Dovecot IMAP server Internal reference: DOP-1849 (Bug ID) Vulnerability type: Uncontrolled recursion (CWE-674) Vulnerable version: 2.0 Vulnerable component: submission, lmtp, lda Fixed version: 2.3.11.3 Report confidence: Confirmed