Lucene search

K
osvGoogleOSV:USN-4598-1
HistoryOct 22, 2020 - 1:22 p.m.

libetpan vulnerability

2020-10-2213:22:09
Google
osv.dev
11
libetpan
starttls
vulnerability
response injection
software
imap
smtp
pop3
cve-2020-15953

AI Score

7.1

Confidence

Low

EPSS

0.013

Percentile

86.1%

It was discovered that LibEtPan incorrectly handled STARTTLS when using
IMAP, SMTP and POP3. A remote attacker could possibly use this issue
to perform a response injection attack. (CVE-2020-15953)