Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24700
HistoryApr 10, 2020 - 1:02 a.m.

Denial Of Service (DoS)

2020-04-1001:02:19
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

EPSS

0.112

Percentile

95.2%

dovecot is vulnerable to denial of service. A denial of service flaw was found in the way Dovecot handled NULL characters in certain header names. A mail message with specially-crafted headers could cause the Dovecot child process handling the target user’s connection to crash, blocking them from downloading the message successfully and possibly leading to the corruption of their mailbox.

References