Lucene search

K
osvGoogleOSV:CVE-2020-16118
HistoryJul 29, 2020 - 6:15 p.m.

CVE-2020-16118

2020-07-2918:15:15
Google
osv.dev
6
cve-2020-16118
gnome balsa
null pointer dereference
client crash
imap-handle.c

AI Score

6.7

Confidence

High

EPSS

0.001

Percentile

39.7%

In GNOME Balsa before 2.6.0, a malicious server operator or man in the middle can trigger a NULL pointer dereference and client crash by sending a PREAUTH response to imap_mbox_connect in libbalsa/imap/imap-handle.c.

AI Score

6.7

Confidence

High

EPSS

0.001

Percentile

39.7%