Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Rumata

Researcher fromBI.ZONE
#48693of 53,622
5Total CVSS
Vulnerabilities · 1
PT-2021-3384
5.0
2021-06-21
Dovecot · Dovecot · CVE-2020-28200
**Name of the Vulnerable Software and Affected Versions** Dovecot versions prior to 2.3.15 **Description** The issue is related to errors in resource management in the Dovecot mail server, which can be exploited by a remote attacker to cause a denial of service. The Sieve engine in Dovecot is affected, particularly when handling complex regular expressions for the regex extension, leading to uncontrolled resource consumption. **Recommendations** For versions prior to 2.3.15, update to version 2.3.15 or later to resolve the issue. As a temporary workaround, consider restricting the use of complex regular expressions in the Sieve engine to minimize the risk of exploitation.