Dovecot · Dovecot · CVE-2020-28200
**Name of the Vulnerable Software and Affected Versions**
Dovecot versions prior to 2.3.15
**Description**
The issue is related to errors in resource management in the Dovecot mail server, which can be exploited by a remote attacker to cause a denial of service. The Sieve engine in Dovecot is affected, particularly when handling complex regular expressions for the regex extension, leading to uncontrolled resource consumption.
**Recommendations**
For versions prior to 2.3.15, update to version 2.3.15 or later to resolve the issue. As a temporary workaround, consider restricting the use of complex regular expressions in the Sieve engine to minimize the risk of exploitation.