Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-10958
HistoryMay 18, 2020 - 2:15 p.m.

Command injection

2020-05-1814:15:00
PRIOn knowledge base
www.prio-n.com
6

5.3 Medium

AI Score

Confidence

High

0.009 Low

EPSS

Percentile

82.7%

In Dovecot before 2.3.10.1, a crafted SMTP/LMTP message triggers an unauthenticated use-after-free bug in submission-login, submission, or lmtp, and can lead to a crash under circumstances involving many newlines after a command.

CPENameOperatorVersion
dovecotlt2.3.10.1